Re: changelist: rm unbound/db/root.key

2016-04-20 Thread Daniel Jakots
On Wed, 20 Apr 2016 09:21:16 +0100, Stuart Henderson
 wrote:

> This file changes twice a day if you're validating dnssec and
> it's pretty pointless to warn about in security(8).
> 
> OK?

Yes please.



Re: changelist: rm unbound/db/root.key

2016-04-20 Thread Matthieu Herrb
On Wed, Apr 20, 2016 at 09:21:16AM +0100, Stuart Henderson wrote:
> This file changes twice a day if you're validating dnssec and
> it's pretty pointless to warn about in security(8).
> 
> OK?

Yes, thank you.
> 
> Index: changelist
> ===
> RCS file: /cvs/src/etc/changelist,v
> retrieving revision 1.110
> diff -u -p -r1.110 changelist
> --- changelist3 Oct 2015 18:57:11 -   1.110
> +++ changelist20 Apr 2016 08:19:50 -
> @@ -150,7 +150,6 @@
>  /var/cron/cron.deny
>  /var/cron/tabs/root
>  +/var/nsd/etc/nsd.conf
> -/var/unbound/db/root.key
>  /var/unbound/etc/unbound.conf
>  /var/yp/Makefile.main
>  /var/yp/Makefile.yp

-- 
Matthieu Herrb


pgpXsqe_8MaQI.pgp
Description: PGP signature


Re: changelist: rm unbound/db/root.key

2016-04-20 Thread Martijn Rijkeboer

> This file changes twice a day if you're validating dnssec and
> it's pretty pointless to warn about in security(8).

I'm not a developer, but I totally agree. A few months ago I was
asking[1] how to silence these warnings. I'm currently commenting out
that line on my DNS resolvers.

Kind regards,


Martijn Rijkeboer

[1] http://marc.info/?l=openbsd-misc&m=144611060708039&w=2



Re: changelist: rm unbound/db/root.key

2016-04-20 Thread Sebastien Marie
On Wed, Apr 20, 2016 at 09:21:16AM +0100, Stuart Henderson wrote:
> This file changes twice a day if you're validating dnssec and
> it's pretty pointless to warn about in security(8).
> 
> OK?

yes please.

OK semarie@

-- 
Sebastien Marie



Re: changelist: rm unbound/db/root.key

2016-04-20 Thread Martijn van Duren
I have this in my config for quite some time, so OK martijn@

On 04/20/16 10:21, Stuart Henderson wrote:
> This file changes twice a day if you're validating dnssec and
> it's pretty pointless to warn about in security(8).
> 
> OK?
> 
> Index: changelist
> ===
> RCS file: /cvs/src/etc/changelist,v
> retrieving revision 1.110
> diff -u -p -r1.110 changelist
> --- changelist3 Oct 2015 18:57:11 -   1.110
> +++ changelist20 Apr 2016 08:19:50 -
> @@ -150,7 +150,6 @@
>  /var/cron/cron.deny
>  /var/cron/tabs/root
>  +/var/nsd/etc/nsd.conf
> -/var/unbound/db/root.key
>  /var/unbound/etc/unbound.conf
>  /var/yp/Makefile.main
>  /var/yp/Makefile.yp
> 



changelist: rm unbound/db/root.key

2016-04-20 Thread Stuart Henderson
This file changes twice a day if you're validating dnssec and
it's pretty pointless to warn about in security(8).

OK?

Index: changelist
===
RCS file: /cvs/src/etc/changelist,v
retrieving revision 1.110
diff -u -p -r1.110 changelist
--- changelist  3 Oct 2015 18:57:11 -   1.110
+++ changelist  20 Apr 2016 08:19:50 -
@@ -150,7 +150,6 @@
 /var/cron/cron.deny
 /var/cron/tabs/root
 +/var/nsd/etc/nsd.conf
-/var/unbound/db/root.key
 /var/unbound/etc/unbound.conf
 /var/yp/Makefile.main
 /var/yp/Makefile.yp