Re: rndc-key has expired

2011-03-24 Thread Joseph S D Yao
On Wed, Mar 23, 2011 at 08:57:26PM +0100, fakessh @ wrote: hi guru I'm walking on the same server rndc and named Then all I can suggest is generating a new key. What puzzles me is that I don't see a way to see or adjust dates on the generated keys. --

Re: rndc-key has expired

2011-03-24 Thread Joseph S D Yao
On Wed, Mar 23, 2011 at 10:09:06PM +0100, fakessh @ wrote: I can wait how long before this ends? ... Are you running 'rndc' from the same server on which the 'named' is running? If not, make sure that both have the same time. ... I don't understand the question. Is it at all related

Re: rndc-key has expired

2011-03-23 Thread fakessh @
after the log that my signature rndc-key has expired. how to update it ___ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users ___ bind-users mailing list

Re: rndc-key has expired

2011-03-23 Thread Eivind Olsen
I edit the file named.conf modification update-policy { grant * self * A TXT; }; to update-policy local; it seems more logical. but I'm still stuck on the validation of isc dlv. the script tells me lost keys Which script? What exactly does it say? I'm guessing you might have

Re: rndc-key has expired

2011-03-23 Thread fakessh @
I use and bind rndc and dlv isc for dnssec my zone config like this zone renelacroute.fr { type master; file /var/named/renelacroute.fr.hosts; auto-dnssec maintain; update-policy local; key-directory /var/named/keys/; allow-transfer {

Re: rndc-key has expired

2011-03-23 Thread fakessh @
hi isc hi list hi guru of bind errors continue to recur rndc-key expired But I apply the command for create the key dnssec-keygen -a HMAC-MD5 -b 512 -n HOST rndc-key Le mercredi 23 mars 2011 à 16:24 +0100, fakessh @ a écrit : I use and bind rndc and dlv isc for dnssec my zone config like

Re: rndc-key has expired

2011-03-23 Thread Joseph S D Yao
What is this??? To: fakessh @ fake...@fakessh.eu On Tue, Mar 22, 2011 at 02:59:22PM +0100, fakessh @ wrote: hi bind guru It appears after the log that my signature rndc-key has expired. how to update it -- gpg --keyserver pgp.mit.edu --recv-key 092164A7 http://pgp.mit.edu:11371/pks

Re: rndc-key has expired

2011-03-23 Thread fakessh @
signature rndc-key has expired. how to update it -- gpg --keyserver pgp.mit.edu --recv-key 092164A7 http://pgp.mit.edu:11371/pks/lookup?op=getsearch=0x092164A7 Are you running 'rndc' from the same server on which the 'named' is running? If not, make sure that both have the same time

Re: rndc-key has expired

2011-03-23 Thread fakessh @
I can wait how long before this ends? Le mercredi 23 mars 2011 à 14:46 -0400, Joseph S D Yao a écrit : What is this??? To: fakessh @ fake...@fakessh.eu On Tue, Mar 22, 2011 at 02:59:22PM +0100, fakessh @ wrote: hi bind guru It appears after the log that my signature rndc-key

Re: rndc-key has expired

2011-03-23 Thread Mark Andrews
In message 1300893881.12273.67.camel@localhost.localdomain, fakessh @ write s: I use and bind rndc and dlv isc for dnssec=20 my zone config like this zone renelacroute.fr { type master; file /var/named/renelacroute.fr.hosts; auto-dnssec maintain;

rndc-key has expired

2011-03-22 Thread fakessh @
hi bind guru It appears after the log that my signature rndc-key has expired. how to update it -- gpg --keyserver pgp.mit.edu --recv-key 092164A7 http://pgp.mit.edu:11371/pks/lookup?op=getsearch=0x092164A7 signature.asc Description: Ceci est une partie de message numériquement signée

Re: rndc-key has expired

2011-03-22 Thread fakessh @
I changed options update-policy { grant fakessh.eu. name fakessh.eu. A TXT; }; since update-policy { grant * self * A TXT; }; Le mardi 22 mars 2011 à 14:59 +0100, fakessh @ a écrit : hi bind guru It appears after the log that my signature rndc-key has expired. how