[dns-operations] DNSSEC and qmail

sthaug at nethelp.no sthaug at nethelp.no
Thu Oct 8 13:01:28 UTC 2009


> > The bug in qmail will be triggered by any zone that has a lot of data at
> > its apex, whether because of DNSSEC or otherwise.
> 
> That's true, but any zone that has a lot of data at its apex may encounter
> major inter-operability problems. Operators may not be very aware of
> this, because if you operate sensibly it's quite unlikely it will happen.

That's simply incorrect. The bug in qmail has been known for many
years, and has been triggered by *many* DNS configurations completely 
independent of DNSSEC.

Steinar Haug, Nethelp consulting, sthaug at nethelp.no



More information about the dns-operations mailing list