[Opendnssec-user] About zone_fetcher
Matthijs Mekking
matthijs at NLnetLabs.nl
Tue Sep 29 09:09:42 UTC 2009
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Hi Antti.
The zone_fetcher is currently being worked on. This should be wrapped up
this week.
The idea is that this daemon transfers the zones once at start up and
every time a notify is received. It will then kick the signer engine
with 'signer_engine_cli update'.
Best regards,
Matthijs Mekking
Antti Ristimäki wrote:
> Hi,
>
> Is the zone_fetcher component already functional? I tried to configure
> the /etc/opendnssec/zonefetch.xml properly and then added a zone without
> an initial unsigned zone file. Should the zone_fetcher read the zone
> file via axfr from the master specified in zonefetch.xml? So far I
> haven't been able to make it work. The log only says:
>
> OpenDNSSEC signer engine: Input file missing:
> /var/opendnssec/unsigned/example.tld
>
> How will the zone fetcher behave after the initial signing? That is,
> will the fetcher always check before the signing process, if there is a
> newer version of the zone on the hidden master? I have also understood
> that there will be a separate notify listener that will listen to
> notifies from the hidden master?
>
> I'm using the latest trunk (r1878).
>
> Best regards,
>
> Antti
> _______________________________________________
> Opendnssec-user mailing list
> Opendnssec-user at lists.opendnssec.org
> https://lists.opendnssec.org/mailman/listinfo/opendnssec-user
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org
iQEcBAEBAgAGBQJKwc7TAAoJEA8yVCPsQCW5YFYIAKHA+aITva++0uxAIG2Wir7R
utXdKD31eIMoWYn7K9jicYpoEHRptom6th2sge3sFe0hO2Bkhvmo5O1O71o+OsVe
91sYIZC99HdZYcjyhxSryFT7O2yqtNb3FaAH9NqS2uJvF1VW+LYzh7zgDd0Bn0z0
hFftU37y8ihcouwqohdHsn1Y/XUrKqv/apf2HGdwlXmAz6Zo6uYeNcz/iA4gzoN9
npAWyDtXZpjzrYEucyLBMWpN5TUuL2Oz8RG4NQ6HRBxk5GzYB0d6gBNQz4eJXS2B
Jw2dlKvfGJriytorfWoUppMMdzxs6bsKXP3ZXPPlNVbGS0bkdc2vZ4ltw/dU0r8=
=TYQO
-----END PGP SIGNATURE-----
More information about the Opendnssec-user
mailing list