Re: Error to validate the signature of a SIG(0) transaction...

This is a discussion on Re: Error to validate the signature of a SIG(0) transaction... within the Bind Users forums, part of the DNS and Related Forums category; Hi everyone, > My guess is the key you've used isn't known to the server. Jim, I'd ...


Go Back   Usenet Forums > DNS and Related Forums > Bind Users

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 01-13-2005
Manuel Gil Perez
 
Posts: n/a
Default Re: Error to validate the signature of a SIG(0) transaction...

Hi everyone,

> My guess is the key you've used isn't known to the server.


Jim, I'd like to add a reliable RSA public key in the server but DNSSec can
only store keys in DNSKEY format. How can I convert a key from RSA to DNSKEY
for storing it like reliable for the server??

Thanks!!

------
Manuel Gil Pérez


----- Original Message -----
Sent: Friday, December 31, 2004 1:14 PM
Subject: Re: Error to validate the signature of a SIG(0) transaction...


>>>>>> "Manuel" == Manuel Gil Perez <manuel@dif.um.es> writes:

>
> Manuel> Hi everyone, I would like to use SIG(0) as mechanism to
> Manuel> publish certificates into my DNS server of secure way
> Manuel> using DNS dynamic update (note: I'm using the last version
> Manuel> of BIND, 9.3.0).
>
> Manuel> The request is generated and sent successfully but I
> Manuel> obtain a SERVFAIL from the server:
>
> Manuel> Reviewing the log files the server returns the following
> Manuel> error: <<request has invalid signature: not verified yet
> Manuel> (NOERROR)>>.
>
> Manuel> Is BIND qualified to verify SIG(0) signatures??
>
> Of course. If it didn't what would be the point of supporting SIG(0)?
>
> Turn up the name server's DNSSEC debugging if you want to know why the
> verification failed. My guess is the key you've used isn't known to
> the server. If you post the actual files -- don't edit anything! --
> someone might be able to debug them.




Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 11:21 AM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0