[Opendnssec-develop] Enforcer NG testing

Matthijs Mekking matthijs at NLnetLabs.nl
Tue Aug 30 13:18:17 UTC 2011


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 08/30/2011 03:12 PM, Rickard Bellgrim wrote:
>>> key list:
>>> - A KSK with DS, DNSKEY, and RRSIGDNSKEY marked as omnipresent does
>>> not get marked as active
> 
> This is my output from the key list command:
> 
> Zone:                           Key role:     DS:          DNSKEY:
>  RRSIGDNSKEY: RRSIG:       Pub: Act: Id:
> blipp.com                       KSK           omnipresent  omnipresent
>  omnipresent  NA           1    0    27d98675ec791fd63905d430df510007
> 
> Omnipresent in all fields, but the Act column is not set to 1.
> Shouldn't it be considered as active?
> 
> // Rickard

Thanks for clarifying. To answer your question: Yes, it should.

Best regards,
  Matthijs
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iQEcBAEBAgAGBQJOXOMZAAoJEA8yVCPsQCW5eZQH/3laILT4z4i/6Kc6YrfTMTz4
v8BF2gerpejbVmnwxjEe+/ctlXVU6ranB5WoxdAbP5uc84W3bqIkFgngFF+FIwp8
Wz+IHcW3pDz4py4TPmfm/93eug41u7VTUQMApgJDxBDqOF3NTRCDSxqBxf+f7MC3
b/YwcG60QY9Fftw5H7VGBMCNLf6XN4zMhRT7Rqo3dmr7k2xlTUfp8WTyuIhu1gkl
yVASHa6FHl5PCM5iBn821NMS1OvNKOOUrNpeYNvlSWoWDXsBUChREfyk6udGgfM/
u8D1Sc2CqAoDu81+uFB0qspWLzS7Pqb4LKKFFmyqm8iXdslpgxInrBd5+0Kzo0Q=
=ZVwi
-----END PGP SIGNATURE-----



More information about the Opendnssec-develop mailing list