[Opendnssec-develop] 1.2.0 with 50000 zones

Patrik Wallström patrik.wallstrom at iis.se
Wed Feb 16 08:36:34 UTC 2011

So I have now 50000 zones in the system. Previous to the start I had added 20500 zones which both the signer and the enforcer was happy with. After shutting down the system and added another 29500 zones I  synced the database to zonelist.xml and started it again with ods-control start.

Both the enforcer and the signer started as excepted. The enforcer happily generated all the signconf files, and the signer started doing its thing. However, after coming back this morning, the enforcer was finished having a full 50000 signconfigs in the signconf directory. But the signer only knew about 21823 zones, which was the number both in the queue and in the tmp and signed directories. So, somehow there was some sort of miscommunication between the two components. After shutting down the system, and started the signer again, the signer was working as expected.

Any thoughts on this? Why isn't the signer picking up all the signconfs?

Patrik Wallström
Project Manager, R&D
.SE (Stiftelsen för Internetinfrastruktur)
E-mail: patrik.wallstrom at iis.se
Web: http://www.iis.se/

More information about the Opendnssec-develop mailing list