[Opendnssec-develop] key generation

sion at nominet.org.uk sion at nominet.org.uk
Thu Feb 4 14:11:02 UTC 2010

I'm looking at the "ods-ksmutil key generate" command, particularly how I
interpret the interval option.

Currently what I do is say "how many keys do I need for that length of
time" - "how many suitable keys do I already have"...

My question is, is that what you would expect? I am tempted to just
generate X years worth of keys regardless of how many we currently have...
Do you think that this is more likely to fit with expectations?


More information about the Opendnssec-develop mailing list