[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]


To: Miek Gieben <miekg@nlnetlabs.nl>
Cc: dnssec@cafax.se
From: Edward Lewis <lewis@tislabs.com>
Date: Thu, 3 May 2001 11:35:49 -0400
Delivery-Date: Fri May 4 08:43:01 2001
In-Reply-To: <20010503170926.A17921@floep.nlnetlabs.nl>
Sender: owner-dnssec@cafax.se
Subject: Re: bind9

I don't know, but I thought you would want to have the child signed keys in
with the parent.  That's the crux of the parent-held-child-sig, isn't it?


At 11:09 AM -0400 5/3/01, Miek Gieben wrote:
>hello,
>
>i want to do the following:
>
>- i have a public keys of child zones
>- i include those keys in the .nl.nl zone
>- i sign the .nl.nl zone
>
>dnssec-signzone will now insert null keys
>for every child that doesn't have signedkey
>file (which means for every child in the zone)
>
>Does somebody know a way to trick dnssec-signzone
>in to _not_ doing this?
>
>grtz Miek


-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
Edward Lewis                                                NAI Labs
Phone: +1 443-259-2352                      Email: lewis@tislabs.com

You fly too often when ... the airport taxi is on speed-dial.

Opinions expressed are property of my evil twin, not my employer.



Home | Date list | Subject list