[Opendnssec-develop] More configuration for signer and auditor
Jakob Schlyter
jakob at kirei.se
Wed Aug 5 13:51:22 UTC 2009
On 5 aug 2009, at 15.24, alexd at nominet.org.uk wrote:
> Of course, there could be many zones in the zonelist. So the command
> line options would need to map individual zones in the zonelist to
> individual temporary files. This could get quite messy.
so I suggest you execute the auditor
a) for all zone in the zonelist
b) for a single zone in the zone list
for (b) it should be possible to override filenames for the unsigned
and signed version of the zone.
for both (a) and (b) it should be possible to override the policy file.
the signer engine can use (b) and point to temporary (unaudited)
signed file. no need for the auditor to know about the signer's
working directory.
jakob
More information about the Opendnssec-develop
mailing list