*** jawad_axd has joined #openstack-dns | 00:04 | |
*** jawad_axd has quit IRC | 00:08 | |
*** ivve has quit IRC | 00:25 | |
*** jawad_axd has joined #openstack-dns | 00:46 | |
*** jawad_axd has quit IRC | 00:50 | |
*** nicolasbock has joined #openstack-dns | 00:57 | |
*** jawad_axd has joined #openstack-dns | 01:07 | |
*** nicolasbock1 has joined #openstack-dns | 01:07 | |
*** nicolasbock has quit IRC | 01:07 | |
*** nicolasbock1 is now known as nicolasbock | 01:07 | |
*** jawad_axd has quit IRC | 01:11 | |
*** bnemec has quit IRC | 01:12 | |
*** nicolasbock has quit IRC | 01:14 | |
*** nicolasbock has joined #openstack-dns | 01:31 | |
*** jawad_axd has joined #openstack-dns | 01:48 | |
*** nicolasbock has quit IRC | 01:51 | |
*** jawad_axd has quit IRC | 01:53 | |
*** nicolasbock has joined #openstack-dns | 01:58 | |
*** bnemec has joined #openstack-dns | 01:58 | |
*** Nick_A has left #openstack-dns | 02:27 | |
*** bnemec has quit IRC | 02:37 | |
*** jawad_axd has joined #openstack-dns | 02:50 | |
*** bnemec has joined #openstack-dns | 02:52 | |
*** jawad_axd has quit IRC | 02:55 | |
*** nicolasbock1 has joined #openstack-dns | 03:22 | |
*** nicolasbock has quit IRC | 03:23 | |
*** nicolasbock1 is now known as nicolasbock | 03:23 | |
*** bnemec has quit IRC | 03:56 | |
*** bnemec has joined #openstack-dns | 03:57 | |
*** nicolasbock has quit IRC | 04:19 | |
*** bnemec has quit IRC | 04:26 | |
*** pcaruana has joined #openstack-dns | 05:41 | |
*** nicolasbock has joined #openstack-dns | 06:39 | |
*** nicolasbock has quit IRC | 06:56 | |
*** nicolasbock has joined #openstack-dns | 07:00 | |
*** jawad_axd has joined #openstack-dns | 07:15 | |
*** ircuser-1 has joined #openstack-dns | 07:33 | |
*** bnemec has joined #openstack-dns | 08:25 | |
*** amoralej|off is now known as amoralej | 08:43 | |
*** bnemec has quit IRC | 08:50 | |
*** nicolasbock has quit IRC | 09:08 | |
*** ivve has joined #openstack-dns | 10:46 | |
ioni | hello guys | 11:22 |
---|---|---|
ioni | i'm trying to add a TXT record for dkim | 11:22 |
ioni | i have hard time adding the record from openstack client | 11:22 |
ioni | it returns that the record is not a 'TXT' Record | 11:23 |
ioni | https://paste.xinu.at/m3xX/ | 11:23 |
frickler | ioni: iirc there is a length limit of 256 chars for TXT records | 11:50 |
ioni | frickler, yes, found some fix that landed for train: https://opendev.org/openstack/designate/commit/02ef0350af6bb2ee1aacb6e7e4ec9acb21eb3dc7?style=unified | 11:51 |
ioni | frickler, i did try to use double quotes but didn't want to accept them | 11:51 |
frickler | ioni: that patch is about quoting, the length limit is hardcoded here https://opendev.org/openstack/designate/src/branch/master/designate/objects/rrdata_txt.py#L29 | 11:53 |
ioni | frickler, so how one can add a dkim text record? | 11:54 |
ioni | i do have entries that are imported with openstack zone import and they work fine | 11:54 |
ioni | i just cannot add from command line | 11:54 |
frickler | ioni: a quick google search indicates that you can split those into multiple records, see eg https://kb.isc.org/docs/aa-00356 | 11:54 |
ioni | frickler, yes and there we are about the bug with quoting | 11:55 |
frickler | ioni: it would affect any update via the API, not only cli but also dashboard. zone import kind of goes around the API | 11:55 |
frickler | mugsie: eandersson: ^^ that may be a bug in it's own | 11:55 |
ioni | frickler, i know what i have to split it, if you look at my entry it is split | 11:56 |
ioni | but i cannot make it do be accepted by the api | 11:56 |
ioni | if i apply that change to by stein version, it does start to return Got a InvalidObject error with message Quotation marks should be escaped with backslash. | 11:57 |
frickler | ioni: ah, hmm, I think you need to split it into multiple records, not concatenated into a single one | 11:57 |
ioni | then i escape the double quote that is inside and returns the same error that is not a txt record | 11:57 |
ioni | frickler, you say that i need to create multiple records? | 11:58 |
ioni | mail._domainkey.domain.com. 3 times? | 11:58 |
ioni | dns doesn't work like that, is not a valid dkim | 11:58 |
ioni | seens dns returns only one record | 11:58 |
ioni | dns mail checker that try to valide the record, returns that the key is not valid | 11:59 |
frickler | ioni: but that how I interpret the isc doc. if that doesn't work, we need to patch designate. or maybe other folks know more about this, but you'll probably have to be patient to get some answers because the summit is in progress this week | 12:00 |
ioni | https://paste.xinu.at/ngK/ | 12:01 |
ioni | this is the TXT that i need to add into designate as mail._domainkey.domain.com | 12:01 |
ioni | i did the openstack zone import create | 12:07 |
ioni | from a bind zone | 12:07 |
ioni | worked fine | 12:07 |
ioni | mail._domainkey.domain.com. 300 IN TXT "v=DKIM1; h=sha256; k=rsa; s=email;" "p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA54ZCY6pdroVFoVakTzC5P+Llv8sFV+zY9HrRM7xwwuiL1+dnpbm/9LczYMuPRECUyoAtGsCKEOQGxuDfPNmZ2SXXbx7I9A0vVRRlD72eBgoRctGUWtbAAmTw00ZHXQIPx374coVg1wLY4kIPpwjv+UAMAeOdMYwQnaegIb/9Moxvp0fmTSIRGx5poLC8XruVvUCHfILbkhoiAS" "RwKvcPKKqz7su2m0FoFrP7n3Mg1rfDncHO9obNPWkMoic4UzTLUH86NPK5zeSTL3NKz1TsNmr2vfYiGbb5xlRqPZCP5Vci90C1fmVQ1UqX | 12:08 |
ioni | ow1ebI8HdzdCaGfJNTYAIWv4dEVHKwIDAQAB" | 12:08 |
*** amoralej is now known as amoralej|lunch | 12:23 | |
*** amoralej|lunch is now known as amoralej | 13:55 | |
*** goldyfruit_ has joined #openstack-dns | 14:19 | |
*** goldyfruit___ has joined #openstack-dns | 14:34 | |
*** goldyfruit_ has quit IRC | 14:36 | |
*** jawad_axd has quit IRC | 15:00 | |
*** jawad_axd has joined #openstack-dns | 15:04 | |
*** jawad_axd has quit IRC | 15:09 | |
*** jawad_axd has joined #openstack-dns | 15:18 | |
*** jawad_axd has quit IRC | 16:02 | |
*** jawad_axd has joined #openstack-dns | 16:14 | |
*** jawad_axd has quit IRC | 16:19 | |
*** jawad_axd has joined #openstack-dns | 16:35 | |
*** jawad_axd has quit IRC | 16:39 | |
*** also_stingrayza has joined #openstack-dns | 17:52 | |
*** stingrayza has quit IRC | 17:53 | |
*** goldyfruit___ has quit IRC | 17:53 | |
*** goldyfruit___ has joined #openstack-dns | 17:58 | |
*** amoralej is now known as amoralej|off | 18:17 | |
*** also_stingrayza has quit IRC | 18:35 | |
*** stingrayza has joined #openstack-dns | 18:36 | |
*** goldyfruit_ has joined #openstack-dns | 18:46 | |
*** goldyfruit___ has quit IRC | 18:49 | |
*** goldyfruit_ has quit IRC | 19:14 | |
*** rouk has joined #openstack-dns | 19:22 | |
rouk | what would be the recommended way to give tenants the ability to create records within only a zone theyve been given access to? | 19:29 |
rouk | i dont see any place to do a zone assignment to a tenant? | 19:29 |
*** jawad_axd has joined #openstack-dns | 20:13 | |
*** goldyfruit_ has joined #openstack-dns | 20:33 | |
*** pcaruana has quit IRC | 22:03 | |
*** jawad_axd has quit IRC | 22:12 | |
*** nicolasbock has joined #openstack-dns | 22:43 | |
*** nicolasbock1 has joined #openstack-dns | 22:46 | |
*** nicolasbock1 has quit IRC | 22:47 | |
*** nicolasbock has quit IRC | 22:48 | |
*** nicolasbock has joined #openstack-dns | 22:49 | |
*** nicolasbock1 has joined #openstack-dns | 23:01 | |
*** nicolasbock has quit IRC | 23:02 | |
*** nicolasbock has joined #openstack-dns | 23:03 | |
*** nicolasbock1 has quit IRC | 23:06 | |
*** nicolasbock1 has joined #openstack-dns | 23:34 | |
*** nicolasbock has quit IRC | 23:36 | |
*** nicolasbock1 is now known as nicolasbock | 23:36 | |
*** nicolasbock has quit IRC | 23:46 | |
*** nicolasbock has joined #openstack-dns | 23:51 | |
*** bnemec has joined #openstack-dns | 23:57 |
Generated by irclog2html.py 2.15.3 by Marius Gedminas - find it at mg.pov.lt!