[Opendnssec-user] moving zone from lab to default

Yuri Schaeffer yuri at nlnetlabs.nl
Thu Mar 31 09:55:26 UTC 2016


> Thank you for the quick response. It would have been easier to
> understand that if "ods-ksmutil key import" took a --policy rather than
> --zone.

Generally when importing keys you want to tie them to a specific zone.

> Does <ShareKeys/> span policys? How come ShareKeys appears to be a
> setting for all keys of all types, and not a setting per repository or
> key-type?

No, it doesn't span multiple policies. It does apply on all keys of that
particular policy. I don't know about any design decisions for this though.

//Yuri

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 181 bytes
Desc: OpenPGP digital signature
URL: <http://lists.opendnssec.org/pipermail/opendnssec-user/attachments/20160331/30229c1e/attachment.bin>


More information about the Opendnssec-user mailing list