Hi Rick,
I think I have found the bug. Please check this commit
https://gitlab.labs.nic.cz/knot/knot-dns/commit/131a32963f9779ff2c2890e465481b8d233d7c03
Good catch!
Thanks,
Daniel
On 2018-09-12 12:01, Rick van Rein wrote:
Hi Anand,
Every time we switch DNSSEC on for a single zone, it iterates over
all
zones (and logs something trivial about each).
What does it log?
info: [ZONE] DNSSEC, signing zone
It's as if it iterates over all signed zones and touches it lightly,
but
for many zones this introduces a seconds-long delay (and it seems like
a
waste).
-Rick
--
https://lists.nic.cz/cgi-bin/mailman/listinfo/knot-dns-users