From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mail-we0-x22c.google.com (mail-we0-x22c.google.com [IPv6:2a00:1450:400c:c03::22c]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by huchra.bufferbloat.net (Postfix) with ESMTPS id 6017821F1EC for ; Wed, 23 Apr 2014 08:42:10 -0700 (PDT) Received: by mail-we0-f172.google.com with SMTP id t61so1047828wes.17 for ; Wed, 23 Apr 2014 08:42:08 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type:content-transfer-encoding; bh=ZvqUyR3/EVU3ZTGkFHID7s4DlMYaB59UMU4AwCMyUJ0=; b=QaVKyctrtYf1hOo5ZUfHNqfENoGZHgrCvdDaN+iW8P9ccfmFRV1fhhh1GzjHHENvAG Az8YI/j3pp+wQ7dGFQo442EQIS75vYEBF1Did8cZ6+/aXcysn58L3E/ML0swIm9Tg2+Z 6mMV97kOPiY2tNqfZbHElIjkb117tVenUZwJlkZnDA9gIaoqj2wQczVO9O35BsPu2Yuk 0xmqSPztsHOu3mcKC/kWTJDr8wXBVqZ2A2gcmn6vBknMT4pOc0SPETl425ck4BHLvG00 7upZcTdyRr7ONZoEzJfrI1Sdz7w/s4+nuf4DyrmZWa907iKt21AFvjkoef2ENr1C0u3i +WRQ== MIME-Version: 1.0 X-Received: by 10.194.203.2 with SMTP id km2mr1125778wjc.72.1398267728183; Wed, 23 Apr 2014 08:42:08 -0700 (PDT) Received: by 10.216.207.82 with HTTP; Wed, 23 Apr 2014 08:42:08 -0700 (PDT) In-Reply-To: References: Date: Wed, 23 Apr 2014 08:42:08 -0700 Message-ID: From: Dave Taht To: Aaron Wood , dnsmasq-discuss Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable Cc: cerowrt-devel Subject: Re: [Cerowrt-devel] more dnssec failures X-BeenThere: cerowrt-devel@lists.bufferbloat.net X-Mailman-Version: 2.1.13 Precedence: list List-Id: Development issues regarding the cerowrt test router project List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 23 Apr 2014 15:42:10 -0000 I will argue that a better place to report dnssec validation errors is the dnsmasq list. On Wed, Apr 23, 2014 at 8:31 AM, Aaron Wood wrote: > Wed Apr 23 15:13:05 2014 daemon.info dnsmasq[29719]: query[A] > e3191.dscc.akamaiedge.net.0.1.cn.akamaiedge.net from 172.30.42.99 > Wed Apr 23 15:13:05 2014 daemon.info dnsmasq[29719]: forwarded > e3191.dscc.akamaiedge.net.0.1.cn.akamaiedge.net to 8.8.8.8 > Wed Apr 23 15:13:05 2014 daemon.info dnsmasq[29719]: dnssec-query[DS] > e3191.dscc.akamaiedge.net.0.1.cn.akamaiedge.net to 8.8.8.8 > Wed Apr 23 15:13:05 2014 daemon.info dnsmasq[29719]: forwarded > e3191.dscc.akamaiedge.net.0.1.cn.akamaiedge.net to 8.8.4.4 > Wed Apr 23 15:13:05 2014 daemon.info dnsmasq[29719]: forwarded > e3191.dscc.akamaiedge.net.0.1.cn.akamaiedge.net to 8.8.8.8 > Wed Apr 23 15:13:05 2014 daemon.info dnsmasq[29719]: reply > e3191.dscc.akamaiedge.net.0.1.cn.akamaiedge.net is BOGUS DS > Wed Apr 23 15:13:05 2014 daemon.info dnsmasq[29719]: validation result is > BOGUS > Wed Apr 23 15:13:05 2014 daemon.info dnsmasq[29719]: reply > e3191.dscc.akamaiedge.net.0.1.cn.akamaiedge.net is 2.20.28.186 > > This one validates via verisign, however. > > -Aaron > > _______________________________________________ > Cerowrt-devel mailing list > Cerowrt-devel@lists.bufferbloat.net > https://lists.bufferbloat.net/listinfo/cerowrt-devel > --=20 Dave T=C3=A4ht NSFW: https://w2.eff.org/Censorship/Internet_censorship_bills/russell_0296_= indecent.article