dig does not have a default trusted key
Bug #1406729 reported by
Anand Kumria
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
bind9 (Ubuntu) |
Confirmed
|
Wishlist
|
Unassigned |
Bug Description
dig, as supplied, will not validate a DNSSEC domain.
The +sigchase option should cause validation to occur but it does not.
As noted in http://
By default dig will look in /etc/trusted-
By supplying the file /etc/trusted-
Thanks,
Anand
To post a comment you must log in.
I can confirm this for Vivid's 9.9.5.dfsg-6ubuntu1 package.
Not convinced either way in regards to whatever Ubuntu should distribute a /etc/trusted- key.key file.
(Not my call either.)