[Opendnssec-develop] Config question

Jakob Schlyter jakob at kirei.se
Tue Aug 4 08:33:25 UTC 2009

On 4 aug 2009, at 10.20, Rickard Bondesson wrote:

> kasp.rnc says:
> - ---
> # The actual salt is generated by the Enforcer
> # Note: the enforcer may decide to store the
> # current salt in the DB and so it could be exported
> # here.
> xsd:string?
> - ---
> Is Enforcer doing this? Then it should just be to parse the kasp.xml

it may store it here at export, but it should normally not be here (as  
it is generated by the Enforcer).
we'll just let the Auditor read the SignerConfiguration for the salt.


More information about the Opendnssec-develop mailing list