[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Sks-devel] DNS broken for hkps.pool.sks-keyservers.net
From: |
Kristian Fiskerstrand |
Subject: |
Re: [Sks-devel] DNS broken for hkps.pool.sks-keyservers.net |
Date: |
Mon, 18 Mar 2019 17:08:43 +0000 |
User-agent: |
Mozilla/5.0 (X11; Linux x86_64; rv:60.0) Gecko/20100101 Thunderbird/60.5.3 |
On 3/18/19 3:58 PM, Todd Fleisher wrote:
> The GNUPG-users post mentions something that may be the root cause:
> The status page for sks-keyservers.net shows no hosts are currently
> available via hkps but other ports are available.
> https://sks-keyservers.net/status/ <https://sks-keyservers.net/status/>I’m
> speculating here, but if whatever Kristian users to update the DNS for
> hkps.pool.sks-keyservers.net <http://hkps.pool.sks-keyservers.net/> doesn’t
> think there are any valid nodes available perhaps it doesn’t publish any
> records. This would result in NXDOMAIN. Given that pool.sks-keyservers.net
> <http://pool.sks-keyservers.net/> & na.pool.sks-keyservers.net
> <http://na.pool.sks-keyservers.net/> & others are still resolving properly I
> don’t think it’s an EDNS issue.
>
> Adding Kristian directly in case he filters sks-devel mail.
>
Well, its a simple enough issue. the CRL expired, so no host validated
anymore.. Services should be returning to normal soon enough. Thanks for
the ping.
--
----------------------------
Kristian Fiskerstrand
Blog: https://blog.sumptuouscapital.com
Twitter: @krifisk
----------------------------
Public OpenPGP keyblock at hkp://pool.sks-keyservers.net
fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3
----------------------------
Corruptissima re publica plurimæ leges
The greater the degeneration of the republic, the more of its laws
signature.asc
Description: OpenPGP digital signature