[Opendnssec-user] key export in ods 2.0.1

Fred.Zwarts F.Zwarts at KVI.nl
Tue Aug 9 15:14:57 UTC 2016


There are active and ready keys:

# ods-enforcer key list --zone KVI.nl
Keys:
Zone:                           Keytype: State:    Date of next transition:
KVI.nl                          KSK      retire    2016-08-12 16:33:10
KVI.nl                          ZSK      active    2016-08-12 16:33:10
KVI.nl                          ZSK      ready     2016-08-12 16:33:10
KVI.nl                          KSK      active    2016-08-12 16:33:10
key list completed in 0 seconds.
# ods-enforcer key export --zone KVI.nl
key export completed in 0 seconds.
#

-----Oorspronkelijk bericht----- 
From: Hoda Rohani
Sent: Tuesday, August 9, 2016 4:50 PM
To: Fred.Zwarts ; opendnssec-user at lists.opendnssec.org
Subject: Re: [Opendnssec-user] key export in ods 2.0.1

Hello Fred,

key export command returns ready and active KSKs by default. It seems your 
KSKs are not in those states.
If you want to export other keys you can explicitly specify key state or key 
type.

key export
--zone <zone> | --all
[--keystate <state>]
[--keytype <type>]
[--ds]



Regards,
Hoda Rohani

On 09-08-16 16:37, Fred.Zwarts wrote:
> After the first impression, mentioned in my previous mail, I continued to 
> adapt some scripts. I like very much the
> --parsable option of ods-enforcer.
>
> There is something that I do not understand. I was used to parse the 
> output of "ods-ksmutil key export --zone
> KVI.nl", but now the command "ods-enforcer key export --zone KVI.nl" does 
> not produce any output on the screen,
> except the line "key export completed in 0 seconds". Where can I find the 
> exported keys?
> _______________________________________________ Opendnssec-user mailing 
> list Opendnssec-user at lists.opendnssec.org
> https://lists.opendnssec.org/mailman/listinfo/opendnssec-usereg 




More information about the Opendnssec-user mailing list