resolved: when matching up RRSIG and DNSKEY RRs, use the RRSIG's signer name, not...
authorLennart Poettering <lennart@poettering.net>
Wed, 9 Dec 2015 17:09:06 +0000 (18:09 +0100)
committerLennart Poettering <lennart@poettering.net>
Thu, 10 Dec 2015 10:35:52 +0000 (11:35 +0100)
commit15accc2765de9cc379eb1042e14b7b519efdb7a0
treeaea6fba86de1d2e5a623d12c0baa84fd088b3d6e
parent6c5e8fbf4e4362c7d6db43e316880a16b1ebd620
resolved: when matching up RRSIG and DNSKEY RRs, use the RRSIG's signer name, not the owner name

When the DNSKEY is in higher zone, then that's OK, and we need to check
the RRSIG's signer name against the DNSKEY hence.
src/resolve/resolved-dns-dnssec.c