[dns-operations] TLSA lookup SERVFAIL from CloudFlare auth servers?

Vicky Shrestha vicky at geeks.net.np
Wed Sep 29 21:33:42 UTC 2021


Thanks Victor for bringing  this to our attention. Both of these records
have invalid TLSA rdata. We are rolling out a fix to validate this in our
API and will be reaching out to our customers to fix them.

Thanks again.

On Sun, Sep 26, 2021 at 12:05 Viktor Dukhovni <ietf-dane at dukhovni.org>
wrote:

> For some reason CloudFlare's auth servers are failing to return
> a non-error reply for (at least):
>
>   https://dnsviz.net/d/_25._tcp.mail1.gearnetwork.de/YU_q9g/dnssec/
>   https://dnsviz.net/d/_25._tcp.mail.markleenen.eu/YVC-8g/dnssec/
>
> --
>         Viktor.
>
> _______________________________________________
> dns-operations mailing list
> dns-operations at lists.dns-oarc.net
> https://lists.dns-oarc.net/mailman/listinfo/dns-operations
>
-- 
With Regards,

Vicky Shrestha
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.dns-oarc.net/pipermail/dns-operations/attachments/20210929/eef5ca55/attachment.html>


More information about the dns-operations mailing list