Your message dated Mon, 07 Nov 2016 17:59:39 +0000
with message-id <e1c3ocp-0006ou...@fasolo.debian.org>
and subject line Bug#843479: Removed package(s) from unstable
has caused the Debian Bug report #754704,
regarding rollerd crashes as soon as key rollover is started
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)
--
754704: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=754704
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: dnssec-tools
Version: 2.0-2
Severity: grave
File: /usr/sbin/rollerd
Hi!
As soon as a zskrollover is started rollerd instanstly crashes and
it's impossible to restart it without manually removing the rollvoer
state from the rollerd file:
*** FATAL PROGRAM ERROR!! Unknown method 'first'
*** which the program has attempted to call for the object:
***
*** faui2k9.de. 86400 IN DNSKEY ; no data
***
*** This object does not have a method 'first'. THIS IS A BUG
*** IN THE CALLING SOFTWARE, which incorrectly assumes that the
*** object would be of a particular type. The type of an object
*** should be checked before calling any of its methods.
at /usr/lib/perl5/Net/DNS/RR.pm line 210
Net::DNS::RR::_new_hash called at /usr/lib/perl5/Net/DNS/RR.pm line
62
eval {...} called at /usr/lib/perl5/Net/DNS/RR.pm line 62
Net::DNS::RR::new('Net::DNS::RR', 'algorithm', 8, 'protocol', 3,
'first', 1, 'flags', 256, ...) called at
/usr/share/perl5/Net/DNS/ZoneFile/Fast.pm line 202
Net::DNS::ZoneFile::Fast::parse('file',
'/etc/bind/zones/faui2k9.de.signed') called at
/usr/share/perl5/Net/DNS/SEC/Tools/dnssectools.pm line 382
Net::DNS::SEC::Tools::dnssectools::dt_parse_zonefile('file',
'/etc/bind/zones/faui2k9.de.signed') called at /usr/sbin/rollerd
line 2832
main::maxttl('/etc/bind/zones/faui2k9.de.signed') called at
/usr/sbin/rollerd line 2905
main::ttlexpire('faui2k9.de', 'HASH(0xbbda50)', 1, 'ZSK') called
at /usr/sbin/rollerd line 3296
main::phasewait('faui2k9.de', 'HASH(0xbbda50)', 1, 'zsk') called
at /usr/sbin/rollerd line 3189
main::phasecmd('CODE(0xad6a70)', 'faui2k9.de', 'HASH(0xbbda50)',
'zsk1') called at /usr/sbin/rollerd line 2051
main::zsk_phaser('faui2k9.de', 'HASH(0xbbda50)') called at
/usr/sbin/rollerd line 782
main::rollkeys() called at /usr/sbin/rollerd line 601
main::full_list_event_loop() called at /usr/sbin/rollerd line 440
main::main() called at /usr/sbin/rollerd line 290
in new Net::DNS::RR( algorithm 8 protocol 3 first 1 flags 256 keybin
... ) at /usr/share/perl5/Net/DNS/ZoneFile/Fast.pm line 202
-- System Information:
Debian Release: 7.5
APT prefers stable
APT policy: (990, 'stable'), (500, 'unstable')
Architecture: mipsel (mips64)
Kernel: Linux 3.2.0-4-loongson-2f
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Versions of packages dnssec-tools depends on:
ii bind9utils 1:9.8.4.dfsg.P1-6+nmu2+deb7u1
ii libmailtools-perl 2.09-1
ii libnet-dns-perl 0.77-3
ii libnet-dns-sec-perl 0.19-2
ii libtimedate-perl 1.2000-1
ii perl 5.14.2-21+deb7u1
Versions of packages dnssec-tools recommends:
ii bind9 1:9.8.4.dfsg.P1-6+nmu2+deb7u1
pn perl-tk <none>
dnssec-tools suggests no packages.
-- Configuration Files:
/etc/default/rollerd changed:
/etc/dnssec-tools/dnssec-tools.conf changed:
admin-email christ...@siccegge.de
keyarch /usr/sbin/keyarch
rollchk /usr/sbin/rollchk
zonesigner /usr/sbin/zonesigner
keygen /usr/sbin/dnssec-keygen
rndc /usr/sbin/rndc
zonecheck /usr/sbin/named-checkzone
zonesign /usr/sbin/dnssec-signzone
algorithm rsasha256
ksklength 2048
zsklength 1024
random /dev/urandom
usensec3 yes
nsec3iter 100
nsec3salt random:64
nsec3optout no
endtime +2592000 # RRSIGs good for thirty days.
lifespan-max 94608000
lifespan-min 3600
ksklife 31536000
zsklife 10368000
archivedir /var/lib/dnssec-tools/archive
entropy_msg 1
savekeys 1
kskcount 1
zskcount 1
roll_loadzone 1
roll_logfile /var/log/dnssec-tools/rollerd.log
roll_loglevel phase
roll_phasemsg long
roll_sleeptime 3600
zone_errors 5
log_tz gmt
tacontact
tasmtpserver localhost
taresolvconf localhost
tatmpdir /var/run/dnssec-tools/trustman
usegui 0
/etc/dnssec-tools/dnssec-tools.rollrec changed:
skip "info rollrec"
version "2"
roll "faui2k9.de"
directory "/etc/bind/zones"
zonename "faui2k9.de"
zonefile "/etc/bind/zones/faui2k9.de.signed"
keyrec "/etc/bind/zones/faui2k9.de.krf"
administrator "christ...@siccegge.de"
kskphase "0"
zskphase "1"
ksk_rolldate "Sun Jul 6 22:28:29 2014"
ksk_rollsecs "1404678509"
zsk_rolldate "Sun Jul 6 22:28:29 2014"
zsk_rollsecs "1404678509"
maxttl "0"
display "0"
phasestart "Wed Jul 9 13:33:10 2014"
# optional records for RFC5011 rolling:
istrustanchor "no"
holddowntime "60D"
roll "egger.im"
directory "/etc/bind/zones"
zonename "egger.im"
zonefile "/etc/bind/zones/egger.im.signed"
keyrec "/etc/bind/zones/egger.im.krf"
administrator "christ...@siccegge.de"
kskphase "0"
zskphase "0"
ksk_rolldate "Sun Jul 6 22:28:29 2014"
ksk_rollsecs "1404678509"
zsk_rolldate "Sun Jul 6 22:28:29 2014"
zsk_rollsecs "1404678509"
maxttl "0"
display "0"
phasestart "new"
# optional records for RFC5011 rolling:
istrustanchor "no"
holddowntime "60D"
roll "xn--serisli-d1a.ch"
loglevel "4"
directory "/etc/bind/zones"
zonename "xn--serisli-d1a.ch"
zonefile "/etc/bind/zones/xn--serisli-d1a.ch.signed"
keyrec "/etc/bind/zones/xn--serisli-d1a.ch.krf"
administrator "christ...@siccegge.de"
kskphase "0"
zskphase "0"
ksk_rolldate "Sun Jul 6 22:46:55 2014"
ksk_rollsecs "1404679615"
zsk_rolldate "Sun Jul 6 22:46:55 2014"
zsk_rollsecs "1404679615"
maxttl "0"
display "0"
phasestart "Wed Jul 9 10:55:19 2014"
# optional records for RFC5011 rolling:
istrustanchor "no"
holddowntime "60D"
roll "christoph-egger.org"
directory "/etc/bind/zones"
zonename "christoph-egger.org"
zonefile "/etc/bind/zones/christoph-egger.org.signed"
keyrec "/etc/bind/zones/christoph-egger.org.krf"
administrator "christ...@siccegge.de"
kskphase "0"
zskphase "0"
ksk_rolldate "Mon Jul 7 11:41:20 2014"
ksk_rollsecs "1404726080"
zsk_rolldate "Mon Jul 7 11:41:20 2014"
zsk_rollsecs "1404726080"
maxttl "0"
display "0"
phasestart "new"
# optional records for RFC5011 rolling:
istrustanchor "no"
holddowntime "60D"
-- no debconf information
--- End Message ---
--- Begin Message ---
Version: 2.2-2+rm
Dear submitter,
as the package dnssec-tools has just been removed from the Debian archive
unstable we hereby close the associated bug reports. We are sorry
that we couldn't deal with your issue properly.
For details on the removal, please see https://bugs.debian.org/843479
The version of this package that was in Debian prior to this removal
can still be found using http://snapshot.debian.org/.
This message was generated automatically; if you believe that there is
a problem with it please contact the archive administrators by mailing
ftpmas...@ftp-master.debian.org.
Debian distribution maintenance software
pp.
Scott Kitterman (the ftpmaster behind the curtain)
--- End Message ---