[Opendnssec-user] ods-dsseen: automatic activation of DNSKEYS

Casper Gielen c.gielen at uvt.nl
Fri Feb 22 10:17:28 UTC 2013


Op 22-02-13 11:07, Sara Dickinson schreef:
> On 21 Feb 2013, at 20:05, Mark Elkins wrote:
> 
>> Been playing with OpenDNSSEC a bit - and I was wondering whether there
>> should not be triggers that the signing Engine can call when events
>> happen.
>> For example - OpenDNSSEC can call RNDC when needed..
>> One could continuously examine the logfile .... but thats ugly.
> 
> The signer can be configured with a 'notify command' which is called when a zone is signed:
> 
> https://wiki.opendnssec.org/display/DOCS/conf.xml#confxml-SignerConfiguration
> 

There is also the DelegationSignerSubmitCommand which is triggered when
a new DNSKEY is created. Together those two cover most situations.
-- 
Casper Gielen <cgielen at uvt.nl> | LIS UNIX
PGP fingerprint = 16BD 2C9F 8156 C242 F981  63B8 2214 083C F80E 4AF7

Universiteit van Tilburg | Postbus 90153, 5000 LE
Warandelaan 2 | Telefoon 013 466 4100 | G 236 | http://www.uvt.nl





More information about the Opendnssec-user mailing list