Hi,

I'm looking at telling opendnssec to sign the DNSKEY RRset with both the
ZSK and KSK.

The documentation at https://wiki.opendnssec.org/display/DOCS/signconf.xml
tells me to add "<ZSK/>" to the Keys section for the 257 flags. This did
not seem to work for me.

However, this file is generated based on other xml files. Is there a way
to specify this via a policy option in kasp.xml?

Paul
_______________________________________________
Opendnssec-user mailing list
[email protected]
https://lists.opendnssec.org/mailman/listinfo/opendnssec-user

Reply via email to