Hi,
Monowall 1.32 on PC Engines ALIX 2D3 (without RTC battery).
When the firewall boots (cold boot). The DNS update (RFC2136) is tried before NTP synchronization of the system clock. Resulting in update failure. Until the next WAN IP change (1 week in my case).
BIND log snippet: 20-Mar-2011 15:52:29.980 security: error: client xxx.xxx.xxx.250#64632: request has invalid signature: TSIG xxxxx: tsig verify failure (BADTIME)
Maybe possible to change of the process order at boot time ?
Thanks team for your great work
Best regards, Antoine
|