Mark Andrews writes:
> 
> In message <20090728175246.bf0a817...@britaine.cis.anl.gov>, bsfin...@anl.gov 
> writes:
> > I do not want any dynamic DNS to my BIND servers, as I am not sure
> > how that DDNS would interface with DNSSEC.
> 
> DNSSEC is easier with a DDNS zone than a non-DDNS zone as named
> can ensure the signatures get re-generated when required.
> 9.6.0 onwards.

The main thing is to tell named where the keys are via
the key-directory statement.

> -- 
> Mark Andrews, ISC
> 1 Seymour St., Dundas Valley, NSW 2117, Australia
> PHONE: +61 2 9871 4742                 INTERNET: ma...@isc.org
-- 
Mark Andrews, ISC
1 Seymour St., Dundas Valley, NSW 2117, Australia
PHONE: +61 2 9871 4742                 INTERNET: ma...@isc.org
_______________________________________________
bind-users mailing list
bind-users@lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users

Reply via email to