Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 12 Jan 2022 20:40:15 -0600
From:      Tim Daneliuk <tundra@tundraware.com>
To:        FreeBSD Mailing List <freebsd-questions@freebsd.org>
Subject:   FreeBSD Trust Chain
Message-ID:  <42acf221-9f2a-86d3-3a7f-1d5568fce9b9@tundraware.com>

next in thread | raw e-mail | index | archive | help
One of our master named servers suddenly decided to quit resolving.
After poking around we saw errors to the effect of "trust chain broken"
in the named logs.  Turning off dnssec validation fixed that (sort of) but
that seems like the wrong way to take care of this problem.

How do we go about validating and/or reinstalling the certificates needed
for the trust chain to work again?

Running on: FreeBSD 13.0-STABLE #0 stable/13-n248793-375fdb6e161


TIA,
----------------------------------------------------------------------------
Tim Daneliuk     tundra@tundraware.com
PGP Key:         http://www.tundraware.com/PGP/



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?42acf221-9f2a-86d3-3a7f-1d5568fce9b9>