From owner-freebsd-stable Tue Oct 2 18:51:50 2001 Delivered-To: freebsd-stable@freebsd.org Received: from yertle.kciLink.com (yertle.kcilink.com [216.194.193.105]) by hub.freebsd.org (Postfix) with ESMTP id 68EDF37B403 for ; Tue, 2 Oct 2001 18:51:46 -0700 (PDT) Received: from onceler.kciLink.com (onceler.kciLink.com [216.194.193.106]) by yertle.kciLink.com (Postfix) with ESMTP id 3630E2E46D; Tue, 2 Oct 2001 21:51:40 -0400 (EDT) Received: (from khera@localhost) by onceler.kciLink.com (8.11.6/8.11.6) id f931peQ86443; Tue, 2 Oct 2001 21:51:40 -0400 (EDT) (envelope-from khera) From: Vivek Khera MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit Message-ID: <15290.28460.13200.896613@onceler.kciLink.com> Date: Tue, 2 Oct 2001 21:51:40 -0400 To: Mark.Andrews@isc.org Cc: stable@freebsd.org, bind-users@isc.org Subject: Re: BIND 8.2.4-REL in FreeBSD 4.4 broke my DNSSEC In-Reply-To: <200109280805.f8S85Rr03084@drugs.dv.isc.org> References: <15282.16519.937665.189852@onceler.kciLink.com> <200109280805.f8S85Rr03084@drugs.dv.isc.org> X-Mailer: VM 6.96 under 21.1 (patch 14) "Cuyahoga Valley" XEmacs Lucid Sender: owner-freebsd-stable@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG >>>>> "MA" == Mark Andrews writes: >> My config is like this: >> >> key kci-yertle. { >> algorithm hmac-md5; MA> secret "my-secret-is-here"; >> }; >> >> server 216.194.193.105 { >> keys { kci-yertle.; }; >> }; MA> Are you sure that you have these clauses in this order and not MA> the reverse order. Keys have to be defined before they used. Yes; I cut-and-pasted the lines as a whole from my named.conf file, and then cut out my actual password. Removing the trailing dot in the key name allowed it to work (at least it doesn't complain on startup). To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-stable" in the body of the message