[Opendnssec-user] Adhering to RFC 9276 Sec. 3.1

Bruno Blanes bruno.blanes at outlook.com
Tue Oct 29 17:38:06 UTC 2024


Forgive me, you're right, I was on an older version, upgrading it fixed it.
Thanks for your help everyone.

Best regards,
Bruno Ortega Blanes

> -----Original Message-----
> From: Stefan Ubbink <Stefan.Ubbink at sidn.nl>
> Sent: Tuesday, October 29, 2024 3:59 AM
> To: Bruno Blanes via Opendnssec-user <opendnssec-
> user at lists.opendnssec.org>
> Cc: Bruno Blanes <bruno.blanes at outlook.com>; Abdulkareem H. Ali
> <kareem.ali at centralnic.com>; Antonio Prado <antonio at prado.it>
> Subject: Re: [Opendnssec-user] Adhering to RFC 9276 Sec. 3.1
> 
> On Mon, 28 Oct 2024 17:44:13 +0000
> Bruno Blanes via Opendnssec-user <opendnssec-user at lists.opendnssec.org>
> wrote:
> 
> Hello Bruno,
> 
> > So resalt wasn't doing anything because the salt wasn't old enough,
> > after purposefully changing the resalt period to make in run, it
> > printed the following message on my logfile when using <Salt
> > length="0"/>:
> >
> > [policy_resalt_task] policy default has an invalid salt length. Must
> > be in range [0..255]
> 
> Which version of OpenDNSSEC are you using? Because there has been a fix
> for that issue in 2.1.11 [1]. So if you are not yet using that version or higher,
> please upgrade.
> 
> [cut how to configure OpenDNSSEC to adhere to RFC 9276 sec. 3.1]
> 
> [1] https://github.com/opendnssec/opendnssec/blob/2.1.14/NEWS#L29
> 
> 
> --
> Stefan Ubbink
> DNS & Systems Engineer
> Present: Mon, Tue, Wed, Fri
> SIDN | Meander 501 | 6825 MD | ARNHEM | The Netherlands T +31 (0)26 352
> 55 00 https://www.sidn.nl


More information about the Opendnssec-user mailing list