[Opendnssec-user] signer setup fails with more than 10 key repositories

Simon Mittelberger simon.mittelberger at united-domains.de
Fri Jan 7 13:13:27 UTC 2011


Hi,

after adding more than 10 repositories, OpenDNSSEC won't start up.

I got the following on the logs:
Jan  7 13:57:54 dnsec1 ods-enforcerd: opendnssec starting...
Jan  7 13:57:54 dnsec1 ods-enforcerd: opendnssec Parent exiting...
Jan  7 13:57:54 dnsec1 ods-enforcerd: opendnssec forked OK...
Jan  7 13:57:54 dnsec1 ods-enforcerd: group set to: opendnssec (111)
Jan  7 13:57:54 dnsec1 ods-enforcerd: user set to: opendnssec (106)
Jan  7 13:57:54 dnsec1 ods-enforcerd: opendnssec started (version
1.2.0rc3), pid 9151
Jan  7 13:57:54 dnsec1 ods-enforcerd: hsm_open() result: 1
Jan  7 13:57:59 dnsec1 ods-signerd: setup failed: error initializing
libhsm (errno 1)
Jan  7 13:57:59 dnsec1 ods-signerd: signer engine setup failed
Jan  7 13:57:59 dnsec1 ods-signerd: signer engine setup failed
Jan  7 13:57:59 dnsec1 ods-signerd: shutdown signer engine

The config files are attached. It works just fine with 10 repositories.
With 11 or more however it stops working.

Does anyone know a reason for this? All the repositories are SoftHSM's.


All the best,
Simon
-------------- next part --------------
A non-text attachment was scrubbed...
Name: conf.xml.failing
Type: application/xml
Size: 3006 bytes
Desc: not available
URL: <http://lists.opendnssec.org/pipermail/opendnssec-user/attachments/20110107/a8e822d6/attachment.wsdl>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: conf.xml.working
Type: application/xml
Size: 2836 bytes
Desc: not available
URL: <http://lists.opendnssec.org/pipermail/opendnssec-user/attachments/20110107/a8e822d6/attachment-0001.wsdl>


More information about the Opendnssec-user mailing list