[Opendnssec-develop] key generation

Jakob Schlyter jakob at kirei.se
Thu Feb 4 15:00:50 UTC 2010

On 4 feb 2010, at 15.11, sion at nominet.org.uk wrote:

> I'm looking at the "ods-ksmutil key generate" command, particularly how I
> interpret the interval option.
> Currently what I do is say "how many keys do I need for that length of
> time" - "how many suitable keys do I already have"...

that seems fair.

> My question is, is that what you would expect? I am tempted to just
> generate X years worth of keys regardless of how many we currently have...

I'm thinking "make sure I have at least X years of keys" more than "generate X years of keys".


More information about the Opendnssec-develop mailing list