[Opendnssec-develop] Re: [OpenDNSSEC] #13: "engine: no new signatures, keeping zone" when changing zone parameters

OpenDNSSEC owner-dnssec-trac at kirei.se
Thu Aug 13 13:10:07 UTC 2009


#13: "engine: no new signatures, keeping zone" when changing zone parameters
---------------------------------+------------------------------------------
Reporter:  mattias at nonetwork.se  |        Owner:  jelte   
    Type:  defect                |       Status:  assigned
Priority:  minor                 |    Component:  Unknown 
 Version:                        |   Resolution:          
Keywords:                        |  
---------------------------------+------------------------------------------

Comment(by mattias at nonetwork.se):

 Maybe I was not clear, but I meant to say that this happens even when I
 wish to do a manual resign with signer_engine_cli.

 If I manually update the zone version number in the unsigned zone and do a
 manual resign I at least would expect a updated SOA record with new
 version number even in the signed zone, triggering a reload of the zone on
 my slave servers.

 If I change the zone signing parameters i kasp.xml for instance changing
 signing algorithm I would then expect a resign of all records in the zone.

 /Mattias

-- 
Ticket URL: <http://trac.opendnssec.org/ticket/13#comment:3>
OpenDNSSEC <http://www.opendnssec.org/>
OpenDNSSEC


More information about the Opendnssec-develop mailing list