[Opendnssec-user] upgrading from 1.0 to 1.1

Pierre Lebrech pierre.lebrech at laposte.net
Mon Jun 14 13:35:53 UTC 2010


Hello,

I have just upgraded on running setup from OpenDNSSEC 1.0 to 1.1 on
Debian GNU Linux.

After having restarted ODS with ods-control start, I get this on my
screen :

################################## snip
Starting signer engine...
connecting to /var/run/opendnssec/engine.sock
OpenDNSSEC signer engine version 1.1.0
Zone list updated: 0 removed, 5 added, 0 updated
running as pid 9247
Starting enforcer...
OpenDNSSEC ods-enforcerd started (version 1.1.0), pid 9250
################################## snip

seems OK...

In daemon.log, I have this :

################################## snip
Jun 14 15:23:53 rdb ods-enforcerd: opendnssec-enforcer starting...
Jun 14 15:23:53 rdb ods-enforcerd: opendnssec-enforcer forked OK...
Jun 14 15:23:53 rdb ods-enforcerd: opendnssec-enforcer Parent exiting...
Jun 14 15:23:53 rdb ods-enforcerd: group set to: ods (1001)
Jun 14 15:23:53 rdb ods-enforcerd: user set to: ods (1001)
Jun 14 15:23:53 rdb ods-enforcerd: opendnssec-enforcer started (version
1.1.0), pid 11450
################################## snip


But in another log file, I have this :

Jun 14 14:51:59 rdb ods-signerd: stderr from preprocessor: cannot add
RRSIG rr if the corresponding RRset (51) is missing

Files like *.optout or *.signed.nsecced in /var/opendnssec/tmp were
created but empty.

any ideas?

thanks.

 
-- 

Pierre Lebrech




More information about the Opendnssec-user mailing list