Hello,

We're rolling out OpenDNSSEC with key sharing per policy.  As we are
scripting, we run into "are you sure?" type questions.  Is there a
generic option to suppress those?  Or specific ones?  If not, can an
option be added, in support of scripting around ods-ksmutil?

Concretely, this is one we would like to bypass:

bash$ ods-ksmutil key rollover --zone example.com --keytype ksk
...
*WARNING* This zone shares keys with others, they will all be rolled; are you
sure? [y/N] y
...

Background: We are using key sharing because we have limited keys in our
HSMs; we have setup a policy with key sharing per customer.


Thanks!
 -Rick
_______________________________________________
Opendnssec-user mailing list
[email protected]
https://lists.opendnssec.org/mailman/listinfo/opendnssec-user

Reply via email to