mirror of
https://salsa.debian.org/freeipa-team/freeipa.git
synced 2025-02-25 18:55:28 -06:00
``dnssec-enable`` is obsolete in 9.16 and raises a warning. The option defaults to ``yes`` in all supported versions of bind. The option is removed when set to ``yes`` and a warning is emitted when the value is ``no``. DNSSEC lookaside validation has been deprecated by RFC 8749 and the feature removed from Bind 9.16. The only available lookaside provider dlv.isc.org no longer provides DLV information since 2017. Fixes: https://pagure.io/freeipa/issue/8349 Fixes: https://pagure.io/freeipa/issue/8350 Signed-off-by: Christian Heimes <cheimes@redhat.com> Reviewed-By: Rob Crittenden <rcritten@redhat.com> Reviewed-By: Alexander Bokovoy <abokovoy@redhat.com>