[Opendnssec-user] Question about keys backup functionality

(Berry) A.W. van Halderen berry at nlnetlabs.nl
Thu Mar 4 13:28:55 UTC 2021


On Wed, Mar 03, 2021 at 10:36:08PM +0100, Vincent Levigneron via Opendnssec-user wrote:
> I have the <RequireBackup/> flag set in conf file, and when I did a
> generation for the next 12 months, I expected that the enforcer will
> wait for the backup commit command before to use the keys that had 
> been just created.
> 
> So the key is already published before I send a notice to ODS that the
> keys had been backuped.
> 
> Mar  3 15:02:40 nspublisher ods-enforcerd[913352]: received command backup prepare --repository AEPKeyper
> Mar  3 15:12:49 nspublisher ods-enforcerd[913352]: received command backup commit --repository AEPKeyper
> 
> Is it how it is supposed to work ?

I believe the backup functionality isn't working, and in need of fixing, the
feature doesn't seem to be fully implemented atm.

\Berry


More information about the Opendnssec-user mailing list