[Opendnssec-user] sign failure

Randy Bush randy at psg.com
Thu Oct 22 17:37:44 UTC 2020


hi

> i don't know if this is the case, but others have reported[1] that
> when the zone name doesn't match with the zonefile name, the error you
> reported may occur.

saw that when i searched.  i am not exactly sure what it means, in the
sense of which fields.  zone name is pretty clear,

   <Zone name="15.28.147.in-addr.arpa">

which matches the name of the zone,

   15.28.147.in-addr.arpa. SOA        rip.psg.com. hostmaster.psg.com. (

and i have a dozen other reverses where the name of the file on disk
is, e.g. 198.180.150 for the zone 150.180.198.in-addr.arpa.

  <Zone name="150.180.198.in-addr.arpa">  <Policy>default</Policy>
    <SignerConfiguration>/usr/local/var/opendnssec/signconf/198.180.150.xml</SignerConfiguration>
    <Adapters>
      <Input> <File>/usr/local/var/opendnssec/unsigned/198.180.150</File> </Input>
      <Output> <File>/usr/home/dns/primary/198.180.150</File> </Output>
      </Adapters>
    </Zone>

randy


More information about the Opendnssec-user mailing list