[Opendnssec-user] enforce zone looping?

Yuri Schaeffer yuri at nlnetlabs.nl
Wed Nov 15 08:39:58 UTC 2017

> after a 'ods-ksmutil backup prepare' 

ods-ksmutil is part of OpenDNSSEC 1.4 and no longer exists in 2.1...

>and a 'ods-enforcer backup commit' (and a ods restart) it worked, and I got an e-mail with the new KSK key.



PS. It seems you are only telling OpenDNSSEC you backed up the key
without doing so (on your HSM). If you don't actually care for backups
remove the <RequireBackup/> from the OpenDNSSEC configuration.

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 195 bytes
Desc: OpenPGP digital signature
URL: <http://lists.opendnssec.org/pipermail/opendnssec-user/attachments/20171115/1b61d311/attachment.bin>

More information about the Opendnssec-user mailing list