[Opendnssec-user] DNSKEY signature expired

Colin Spensley odsu at c20.ksac.uk
Wed May 5 20:26:35 UTC 2021


On 03/05/2021 14:25, Berry van Halderen via Opendnssec-user wrote:

> OpenDNSSEC 2.1.9 will come out today or early tomorrow with a fix for 
> this issue.
> Meanwhile you can upgrade to the release candidate for it.  This will 
> fix the
> issue.
> 
> https://dist.opendnssec.org/source/testing/opendnssec-2.1.9rc1.tar.gz
> 
> This issue has been reported lately on the list and you situation seems 
> identical,
> or at least resolves this issue.  Please let me know it it works for 
> you, this
> will expedite my work.
> 
> \Berry
> 

Thanks Berry and apologies for the delay in replying. I had to wait for 
2.1.9 to make it into FreeBSD ports, which it has only just done.

I confirm that on restarting the daemons following this upgrade, the 
zone which had been failing to sign was immediately resigned without any 
other actions being required.

Many thanks for all your efforts.

Colin


More information about the Opendnssec-user mailing list