1 1.1 christos ; Signature test file 2 1.1 christos 3 1.1 christos ; first entry is a DNSKEY answer, with the DNSKEY rrset used for verification. 4 1.1 christos ; later entries are verified with it. 5 1.1 christos 6 1.1 christos ; Test multiple signature algos: RSASHA1 + RSASHA256 signatures. 7 1.1 christos 8 1.1 christos ; RSA key from ldns tool 9 1.1 christos ENTRY_BEGIN 10 1.1 christos SECTION QUESTION 11 1.1 christos sub.example.com. IN DNSKEY 12 1.1 christos SECTION ANSWER 13 1.1 christos example.com. 3600 IN DNSKEY 256 3 8 AwEAAbd9WqjzE2Pynz21OG5doSf9hFzMr5dhzz2waZ3vTa+0o5r7AjTAqmA1yH/B3+aAMihUm5ucZSfVqo7+kOaRE8yFj9aivOmA1n1+JLevJq/oyvQyjxQN2Qb89LyaNUT5oKZIiL+uyyhNW3KDR3SSbQ/GBwQNDHVcZi+JDR3RC0r7 ;{id = 1443 (zsk), size = 1024b} 14 1.1 christos example.com. 3600 IN DNSKEY 256 3 5 AQPQ41chR9DEHt/aIzIFAqanbDlRflJoRs5yz1jFsoRIT7dWf0r+PeDuewdxkszNH6wnU4QL8pfKFRh5PIYVBLK3 ;{id = 30899 (zsk), size = 512b} 15 1.1 christos ENTRY_END 16 1.1 christos 17 1.1 christos ; both signatures valid 18 1.1 christos ENTRY_BEGIN 19 1.1 christos SECTION QUESTION 20 1.1 christos www.example.com. IN A 21 1.1 christos SECTION ANSWER 22 1.1 christos www.example.com. 3600 IN A 192.0.2.66 23 1.1 christos www.example.com. 3600 IN RRSIG A 8 3 3600 20070926134150 20070829134150 1443 example.com. sX+BZ6Qdq0Td/THR1HgOnWh9URNP03KMEgjpnRGbS74NqlmlqLU3HcimOT/lUD7xsZTeOIWw5kAcQePxU3UrjS5gsIttIXAfrHFmOtTsyb0O4w0/RpR0QYxRl1hk4zQRPzHeEkgxNTe+y9V9gYe7iv9OddXsfwEnmqQiXk+tdsU= ;{id = 1443} 24 1.1 christos www.example.com. 3600 IN RRSIG A 5 3 3600 20070926134150 20070829134150 30899 example.com. Ip2xOAgSq3HdeGEMyQ0jafKNOOJO7Ca+huBgBPSj7B3txTlP9hBzlV0rb0XULymEiQLSpIPm4EY7xzom7z6aKA== ;{id = 30899} 25 1.1 christos ENTRY_END 26 1.1 christos 27 1.1 christos ; the SHA1 invalid 28 1.1 christos ENTRY_BEGIN 29 1.1 christos SECTION QUESTION 30 1.1 christos bogus.example.com. IN A 31 1.1 christos SECTION ANSWER 32 1.1 christos bogus.example.com. 3600 IN A 192.0.2.66 33 1.1 christos bogus.example.com. 3600 IN RRSIG A 8 3 3600 20070926134150 20070829134150 1443 example.com. qaYKAK9+t5HggYjHduA5d3A3i41HoU0ct0yqNzsYQqElFkH0d1aTjRDExD0PGeVbMTocMBru+ID9cLot3kwgn8aZL6UI3AwV6MR+0lianuA8DyhuqpD8OwkZ+LJxNsfq3t5ospXlBhyaI95S7lC3N6dsHDj4qtOwyE42fnQkedE= ;{id = 1443} 34 1.1 christos bogus.example.com. 3600 IN RRSIG A 5 3 3600 20070926134150 20070829134150 30899 example.com. Ip2xOAgSq3HdeGEMyQ0jafKNOOJO7Ca+huBgBPSj7B3txTlP9hBzlV0rb0XULymEiQLSpIPm4EY7xzom7z6aKA== ;{id = 30899} 35 1.1 christos ENTRY_END 36 1.1 christos 37 1.1 christos ; the SHA256 invalid 38 1.1 christos ENTRY_BEGIN 39 1.1 christos SECTION QUESTION 40 1.1 christos bogus.example.com. IN A 41 1.1 christos SECTION ANSWER 42 1.1 christos bogus.example.com. 3600 IN A 192.0.2.66 43 1.1 christos bogus.example.com. 3600 IN RRSIG A 8 3 3600 20070926134150 20070829134150 1443 example.com. sX+BZ6Qdq0Td/THR1HgOnWh9URNP03KMEgjpnRGbS74NqlmlqLU3HcimOT/lUD7xsZTeOIWw5kAcQePxU3UrjS5gsIttIXAfrHFmOtTsyb0O4w0/RpR0QYxRl1hk4zQRPzHeEkgxNTe+y9V9gYe7iv9OddXsfwEnmqQiXk+tdsU= ;{id = 1443} 44 1.1 christos bogus.example.com. 3600 IN RRSIG A 5 3 3600 20070926134150 20070829134150 30899 example.com. EetlYQbmdt8deu6LIOYTxwHsMnivWBaxClTlLTPooUjgE+upQfCbG25mdY/wx+lM8fthKry+z65YACR8opA0Sw== ;{id = 30899} 45 1.1 christos ENTRY_END 46 1.1 christos 47 1.1 christos ; SHA1 and SHA256 not valid 48 1.1 christos ENTRY_BEGIN 49 1.1 christos SECTION QUESTION 50 1.1 christos bogus.example.com. IN A 51 1.1 christos SECTION ANSWER 52 1.1 christos bogus.example.com. 3600 IN A 192.0.2.66 53 1.1 christos bogus.example.com. 3600 IN RRSIG A 8 3 3600 20070926134150 20070829134150 1443 example.com. sX+BZ6Qdq0Td/THR1HgOnWh9URNP03KMEgjpnRGbS74NqlmlqLU3HcimOT/lUD7xsZTeOIWw5kAcQePxU3UrjS5gsIttIXAfrHFmOtTsyb0O4w0/RpR0QYxRl1hk4zQRPzHeEkgxNTe+y9V9gYe7iv9OddXsfwEnmqQiXk+tdsU= ;{id = 1443} 54 1.1 christos bogus.example.com. 3600 IN RRSIG A 5 3 3600 20070926134150 20070829134150 30899 example.com. Ip2xOAgSq3HdeGEMyQ0jafKNOOJO7Ca+huBgBPSj7B3txTlP9hBzlV0rb0XULymEiQLSpIPm4EY7xzom7z6aKA== ;{id = 30899} 55 1.1 christos ENTRY_END 56 1.1 christos 57