Re: verify failed for dnssec enabled senderdomain

From: Murray S. Kucherawy <msk_at_blackops.org>
Date: Mon, 22 Nov 2010 13:10:10 -0800 (PST)

Is it possible the nameserver is returning the A and the RRSIG in the same
response, rather than returning them individually in response to different
queries? That would explain this behaviour.

If this is to be expected, I'll need to modify libopendkim to expect
RRSIGs as well as TXTs. Currently it only expects one TXT in reply to a
query, and anything other than that or a CNAME is considered an exception.
Received on Mon Nov 22 2010 - 23:45:10 PST

This archive was generated by hypermail 2.3.0 : Mon Oct 29 2012 - 23:32:54 PST