[Opendnssec-user] enforce zone looping?
Yuri Schaeffer
yuri at nlnetlabs.nl
Wed Nov 15 08:39:58 UTC 2017
> after a 'ods-ksmutil backup prepare'
ods-ksmutil is part of OpenDNSSEC 1.4 and no longer exists in 2.1...
>and a 'ods-enforcer backup commit' (and a ods restart) it worked, and I got an e-mail with the new KSK key.
Good.
//Yuri
PS. It seems you are only telling OpenDNSSEC you backed up the key
without doing so (on your HSM). If you don't actually care for backups
remove the <RequireBackup/> from the OpenDNSSEC configuration.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 195 bytes
Desc: OpenPGP digital signature
URL: <http://lists.opendnssec.org/pipermail/opendnssec-user/attachments/20171115/1b61d311/attachment.bin>
More information about the Opendnssec-user
mailing list