[Opendnssec-develop] RE: [OpenDNSSEC] #257: Error in ods-signerd

Stafford, Paige L. staffordp1 at ornl.gov
Mon Aug 1 13:54:05 UTC 2011


Hmmm...  I'm a bit confused.  I'm not sure how I'm "creating a backup file."  I do have the "<RequireBackup/>" option in the conf.xml enabled.  Is that the problem?  Other than that, since the error occurred when executing "ods-control start," I don't believe I'm purposely requesting backup files...  

BTW, I'm migrating from Xelerance DNSx.  Some of the KSK's do not have the key algorithm defined properly (it shows the algorithm="?"), and when importing, "softhsm-keyconf --topkcs8" doesn't complain about the it.



-----Original Message-----
From: OpenDNSSEC [mailto:owner-dnssec-trac at kirei.se] 
Sent: Monday, August 01, 2011 9:10 AM
Cc: opendnssec-develop at lists.opendnssec.org
Subject: Re: [OpenDNSSEC] #257: Error in ods-signerd

#257: Error in ods-signerd
----------------------------------------------+-----------------------------
Reporter:  staffordp1@…                       |        Owner:  matthijs
    Type:  defect                             |       Status:  new     
Priority:  minor                              |    Component:  Signer  
 Version:  1.3.0                              |   Resolution:          
Keywords:  nsec3params zone.c nsec3params_rr  |  
----------------------------------------------+-----------------------------

Comment (by rb):

 Thanks for finding the issue. We will have a look at it.

 The code that you mention is used to read the internal backup file. You do
 not need to create the backup file if you migrate to OpenDNSSEC.

 You just need to:
 1. Configure the system
 2. ods-ksmutil setup
 3. ods-ksmutil key import ...
 4. ods-control start

 hxxp://trac.opendnssec.org/wiki/Signer/Using/Migrating

-- 
Ticket URL: <hxxp://trac.opendnssec.org/ticket/257#comment:1>
OpenDNSSEC <hxxp://www.opendnssec.org/>
OpenDNSSEC


More information about the Opendnssec-develop mailing list