[Opendnssec-develop] Key necromancy?

Jakob Schlyter jakob at kirei.se
Sun Sep 11 18:30:45 UTC 2011


On 7 sep 2011, at 16:39, Siôn Lloyd wrote:

> Is this all within the enforcer (we are not looking at old copies of signconf)?

Correct.

> Currently we do not delete keys that are in the generate state, the theory being that they have never been published and so should be good for use with another zone. Is it these keys that are coming back?

Yes.

	j




More information about the Opendnssec-develop mailing list