From owner-freebsd-questions@FreeBSD.ORG Mon Jul 21 07:33:13 2014 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1 with cipher ADH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id BFD0CCC2 for ; Mon, 21 Jul 2014 07:33:13 +0000 (UTC) Received: from elsa.gfuzz.de (elsa.gfuzz.de [88.198.148.62]) by mx1.freebsd.org (Postfix) with ESMTP id 77F162F99 for ; Mon, 21 Jul 2014 07:33:13 +0000 (UTC) Received: from localhost (localhost [127.0.0.1]) by elsa.gfuzz.de (Postfix) with ESMTP id 0921AE3393 for ; Mon, 21 Jul 2014 09:33:06 +0200 (CEST) X-Virus-Scanned: Debian amavisd-new at elsa.gfuzz.de Received: from elsa.gfuzz.de ([127.0.0.1]) by localhost (elsa.gfuzz.de [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id dOLywRfvpQfV for ; Mon, 21 Jul 2014 09:33:03 +0200 (CEST) Received: from mail.opdns.de (188-193-147-46-dynip.superkabel.de [188.193.147.46]) (Authenticated sender: lists@gfuzz.de) by elsa.gfuzz.de (Postfix) with ESMTPSA id 8FE4BE041C for ; Mon, 21 Jul 2014 09:33:03 +0200 (CEST) Date: Mon, 21 Jul 2014 09:33:01 +0200 From: Oliver Peter To: "freebsd-questions@freebsd.org" Subject: Re: DNSSEC validation with Unbound in FreeBSD 10 Message-ID: <20140721073301.GA28832@mail.opdns.de> References: MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="k+w/mQv8wyuph6w0" Content-Disposition: inline In-Reply-To: X-Operating-System: Linux 2.6.32-29-pve i686 User-Agent: Mutt/1.5.23 (2014-03-12) X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 21 Jul 2014 07:33:13 -0000 --k+w/mQv8wyuph6w0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Fri, Jul 18, 2014 at 03:53:28PM -0400, freebsd@fongaboo.com wrote: >=20 > To what exent is what is described in this tutorial already turnkeyed for= =20 > you in a fresh FreeBSD 10 install?: >=20 > http://www.prado.it/2012/04/23/how-to-configure-unbound-with-dnssec-valid= ation-on-freebsd-9-0/ Unbound is in base (rcvar=3D"local_unbound_enable"), preparations for chroo= t have already been made, minimal configuration for chrooted unbound is in documentation [unbound.conf(5)]. root key for dnssec validation still has to be fetched manually and des not belong to base. --=20 Oliver PETER oliver@gfuzz.de 0x456D688F --k+w/mQv8wyuph6w0 Content-Type: application/pgp-signature; name="signature.asc" Content-Description: Digital signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v2 iEYEARECAAYFAlPMwi0ACgkQ6LH/IUVtaI+97gCggSOvXskcwa0ZwpXcwsyYE8oY Eg4AniCBbVDv5anprVrhvB4FlFU+37DV =I68T -----END PGP SIGNATURE----- --k+w/mQv8wyuph6w0--