[Opendnssec-user] Recover (very) old key

Sebastian Castro sebastian at nzrs.net.nz
Thu Jan 10 20:23:55 UTC 2013

On 11/01/13 06:32, Carlos M. Martinez wrote:
> Hello all,

Hey Carlos,

> I'm trying to recover an old key, one that is no longer listed by
> ods-ksmutil key list. Is that even possible ? I tried using --keystate
> DEAD and other states, but to no avail.

What do you mean with 'recover'? Do you want to rollback the state of a

Is the key still in the HSM?

In my experience, ods-ksmutil key list doesn't show the dead keys, for
example. Your option here is to use sqlite and query the KASP directly.

If you have any specific objective to achieve, would you mind sharing?


> Any ideas?
> Warm regards,
> ~Carlos
> _______________________________________________
> Opendnssec-user mailing list
> Opendnssec-user at lists.opendnssec.org
> https://lists.opendnssec.org/mailman/listinfo/opendnssec-user

Sebastian Castro
DNS Specialist
.nz Registry Services (New Zealand Domain Name Registry Limited)
desk: +64 4 495 2337
mobile: +64 21 400535

More information about the Opendnssec-user mailing list