To:
Miek Gieben <miekg@nlnetlabs.nl>
Cc:
dnssec@cafax.se
From:
Edward Lewis <lewis@tislabs.com>
Date:
Thu, 3 May 2001 11:35:49 -0400
Delivery-Date:
Fri May 4 08:43:01 2001
In-Reply-To:
<20010503170926.A17921@floep.nlnetlabs.nl>
Sender:
owner-dnssec@cafax.se
Subject:
Re: bind9
I don't know, but I thought you would want to have the child signed keys in with the parent. That's the crux of the parent-held-child-sig, isn't it? At 11:09 AM -0400 5/3/01, Miek Gieben wrote: >hello, > >i want to do the following: > >- i have a public keys of child zones >- i include those keys in the .nl.nl zone >- i sign the .nl.nl zone > >dnssec-signzone will now insert null keys >for every child that doesn't have signedkey >file (which means for every child in the zone) > >Does somebody know a way to trick dnssec-signzone >in to _not_ doing this? > >grtz Miek -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=- Edward Lewis NAI Labs Phone: +1 443-259-2352 Email: lewis@tislabs.com You fly too often when ... the airport taxi is on speed-dial. Opinions expressed are property of my evil twin, not my employer.