Project

General

Profile

Tâche #30224

Scénario #30138: Le DNS doit être fonctionnel sur Amon 2.8.0

Tester la configuration dnssec

Added by Philippe Caseiro over 1 year ago. Updated over 1 year ago.

Status:
Fermé
Priority:
Normal
Assigned To:
Start date:
05/25/2020
Due date:
% Done:

0%

Remaining (hours):
0.0

Associated revisions

Revision 17e08b36 (diff)
Added by Philippe Caseiro over 1 year ago

Ajout de la configuration dnssec.

On active la validation et le lookaside.

cf: https://www.sidn.nl/en/dnssec/dnssec-validation-on-bind-named

ref #30224

History

#1 Updated by Philippe Caseiro over 1 year ago

  • Status changed from Nouveau to En cours

#2 Updated by Philippe Caseiro over 1 year ago

  • Status changed from En cours to Résolu

#3 Updated by Fabrice Barconnière over 1 year ago

  • Status changed from Résolu to En cours

Il semblerai que cette option soit obsolète et inutile depuis 2017

==> /var/log/rsyslog/local/named/named.warning.log <==
2020-06-03T14:07:51.804149+02:00 amon.etb1.lan named[899]: /etc/bind/named.conf:27: option 'dnssec-lookaside' is obsolete and should be removed

Supprimer cette option permettrait de supprimer une étape inutile lors de la résolution de nom
https://kb.isc.org/docs/disable-dnssec-lookaside-dlv-now-heres-how

#4 Updated by Philippe Caseiro over 1 year ago

  • Status changed from En cours to Résolu

#5 Updated by Fabrice Barconnière over 1 year ago

  • Status changed from Résolu to Fermé
  • Remaining (hours) set to 0.0

Also available in: Atom PDF