Missing DEP8 test to cover DNSSEC config
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
bind9 (Ubuntu) |
New
|
Undecided
|
Unassigned |
Bug Description
The bind9 package has a couple dep8 tests that cover some basics, but what's still needed is testing a dnssec based setup along the lines of the process documented at https:/
DNSSEC is "DNS with Security Extensions", allowing digital signatures that allow each DNS response to be verified that the answer did not change during transit (validated), and that the data came from a true source (trusted).
This test will need to short circuit much of the normal process, since we don't want it to communicate across the network, but it should at least verify these two steps are attempted correctly.
Ref:
* https:/
* https:/