[Opendnssec-develop] More configuration for signer and auditor

Jakob Schlyter jakob at kirei.se
Wed Aug 5 13:51:22 UTC 2009


On 5 aug 2009, at 15.24, alexd at nominet.org.uk wrote:

> Of course, there could be many zones in the zonelist. So the command  
> line options would need to map individual zones in the zonelist to  
> individual temporary files. This could get quite messy.

so I suggest you execute the auditor

a) for all zone in the zonelist
b) for a single zone in the zone list

for (b) it should be possible to override filenames for the unsigned  
and signed version of the zone.
for both (a) and (b) it should be possible to override the policy file.

the signer engine can use (b) and point to temporary (unaudited)  
signed file. no need for the auditor to know about the signer's  
working directory.

	jakob




More information about the Opendnssec-develop mailing list