[Opendnssec-user] Re: New installation notes for Ubuntu (Beta5)

Rickard Bellgrim rickard.bellgrim at iis.se
Mon Nov 2 16:22:51 UTC 2009

Thanks for your guide.

Here are some of my comments.

No need for this if you run from the tarball:
        ~# apt-get install subversion
        ~# apt-get install autoconf
        ~# apt-get install automake
        ~# apt-get install libtool
        ~# apt-get install sun-java6-jre sun-java6-plugin sun-java6-fonts

        ~# wget http://rubyforge.org/frs/download.php/65630/dnsruby-1.39.gem
        ~# sudo gem install /usr/local/bin/dnsruby-1.39.gem
Is equal to:
        ~# gem install dnsruby

OpenDNSSEC default to these settings, so they are not needed:
        --sysconfdir=/etc --localstatedir=/var

Botan is not installed here:
but here (which is default)

LDNS is not installed here:
but here (which is default)

Are you sure that you want to install SoftHSM here:
and not here (then will your system find e.g. the softhsm tool and no need to change directory later on):

No need for:
        ~# export SOFTHSM_CONF=/etc/softhsm.conf
        ~# echo $SOFTHSM_CONF
The default location is this. SOFTHSM_CONF is for when you want to have the config in another location.

The work-around when initializing the token is not needed since you have installed 1.9.0.

The token table gives you no useful information. It only shows you the token label and the digested SO and user PIN. You probably want to have a look in the Attribute table. One question, why do you want to have a look in the token database? Why not use the PKCS#11 interface to check for information?

You do not need to generate the keys yourself. The system will do that for you.

More information can be found on http://trac.opendnssec.org/wiki/Signer/Using

// Rickard

