Hi,

Every time we switch DNSSEC on for a single zone, it iterates over all
zones (and logs something trivial about each).  This appears to us as
not very efficient.  Is there a reason for it?  Following the
documentation we had not expected this behaviour,

https://www.knot-dns.cz/docs/2.6/html/configuration.html#zone-signing

We are running Knot DNS with ~3500 zones, so you can imagine this has a
bit of an impact.

Thanks,
 -Rick
-- 
https://lists.nic.cz/cgi-bin/mailman/listinfo/knot-dns-users

Reply via email to