mirror of
https://github.com/isc-projects/bind9.git
synced 2026-03-20 01:27:20 -04:00
[v9_10] updated zkt
4008. [contrib] Updated zkt to latest version (1.1.3). [RT #37886]
This commit is contained in:
parent
b233d5585d
commit
9976da697b
232 changed files with 6846 additions and 10965 deletions
2
CHANGES
2
CHANGES
|
|
@ -1,3 +1,5 @@
|
|||
4008. [contrib] Updated zkt to latest version (1.1.3). [RT #37886]
|
||||
|
||||
4007. [doc] Remove acl forward reference restriction. [RT #37772]
|
||||
|
||||
4006. [security] A flaw in delegation handling could be exploited
|
||||
|
|
|
|||
7229
contrib/zkt-1.1.2/configure
vendored
7229
contrib/zkt-1.1.2/configure
vendored
File diff suppressed because it is too large
Load diff
|
|
@ -1,41 +0,0 @@
|
|||
#
|
||||
# @(#) dnssec.conf vT0.99d (c) Feb 2005 - Aug 2009 Holger Zuleger hznet.de
|
||||
#
|
||||
|
||||
# dnssec-zkt options
|
||||
Zonedir: "."
|
||||
Recursive: False
|
||||
PrintTime: True
|
||||
PrintAge: False
|
||||
LeftJustify: False
|
||||
|
||||
# zone specific values
|
||||
ResignInterval: 1w # (604800 seconds)
|
||||
Sigvalidity: 10d # (864000 seconds)
|
||||
Max_TTL: 8h # (28800 seconds)
|
||||
Propagation: 5m # (300 seconds)
|
||||
KEY_TTL: 4h # (14400 seconds)
|
||||
Serialformat: incremental
|
||||
|
||||
# signing key parameters
|
||||
Key_algo: RSASHA1 # (Algorithm ID 5)
|
||||
KSK_lifetime: 1y # (31536000 seconds)
|
||||
KSK_bits: 1300
|
||||
KSK_randfile: "/dev/urandom"
|
||||
ZSK_lifetime: 12w # (7257600 seconds)
|
||||
ZSK_bits: 512
|
||||
ZSK_randfile: "/dev/urandom"
|
||||
SaltBits: 24
|
||||
|
||||
# dnssec-signer options
|
||||
LogFile: ""
|
||||
LogLevel: ERROR
|
||||
SyslogFacility: NONE
|
||||
SyslogLevel: NOTICE
|
||||
VerboseLog: 0
|
||||
Keyfile: "dnskey.db"
|
||||
Zonefile: "zone.db"
|
||||
DLV_Domain: ""
|
||||
Sig_Pseudorand: False
|
||||
Sig_GenerateDS: True
|
||||
Sig_Parameter: ""
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20100221184315
|
||||
;% lifetime=14d
|
||||
dyn.example.net. IN DNSKEY 256 3 7 AwEAAfqG0rb9Ear+Pv7xBg9lc9czF+2YUa8Ris63E/oRRGQEH5U/ZS3A xz3aOhPFKzAAhjfaG3vTNW3Wl4bl4ITFZrk=
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 7 (NSEC3RSASHA1)
|
||||
Modulus: +obStv0Rqv4+/vEGD2Vz1zMX7ZhRrxGKzrcT+hFEZAQflT9lLcDHPdo6E8UrMACGN9obe9M1bdaXhuXghMVmuQ==
|
||||
PublicExponent: AQAB
|
||||
PrivateExponent: 4osOepin5GdakfFkGIIWWZCDX7/whY4oZjtZnjUFEiZ6YGdQV8FwihgQ9ZdQwTY2QgaCiI/7l0yFE3X2YOk5HQ==
|
||||
Prime1: /eFIXmTu+XNTuXVfHYcXJTFc4UaThJszaKPmg/xm3ts=
|
||||
Prime2: /J5fOUcGkFGv4prHDAmige180r7zaYznUicuDvNwkvs=
|
||||
Exponent1: Alf7EAwEfL8IzdR8jUw69XfwMJAzOm0oW1XwAdXpqTM=
|
||||
Exponent2: FBUbCNimou57hw466LATZTTWCYL4otl6wkMvHC0qM+U=
|
||||
Coefficient: Q9eSjjf/S3Is3mcOn2RsloJKVzLuHiv54HaF7mwkbU4=
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20100221184315
|
||||
;% lifetime=60d
|
||||
dyn.example.net. IN DNSKEY 257 3 7 AwEAAeqEDYgA5lns1VsMJiZfTWMEguameVmOoBYx8s1uLzmS/3APsh1e WCeoBgAjRry1tpM/bPowyuygE4H0LpzNQLm9RbjDmpDN8Gwi3AjEnG4H CT58TuAVxjiefN+vb1pvyFlAL58YOkuGf9tG/NJMNc+XrULAU1ey2dT9 Fh+SCVO3
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 7 (NSEC3RSASHA1)
|
||||
Modulus: 6oQNiADmWezVWwwmJl9NYwSC5qZ5WY6gFjHyzW4vOZL/cA+yHV5YJ6gGACNGvLW2kz9s+jDK7KATgfQunM1Aub1FuMOakM3wbCLcCMScbgcJPnxO4BXGOJ58369vWm/IWUAvnxg6S4Z/20b80kw1z5etQsBTV7LZ1P0WH5IJU7c=
|
||||
PublicExponent: AQAB
|
||||
PrivateExponent: F5/Z5RuCGQj8rUFaDn+HQjRQI4AdtWHiypmZhgxVgY1HYjiSjtbUNpp8kEL9e0Eq9UZsaf/EUXYGwQ6iK3WZ0WrVP72bkjcWQAB2THYIxP7DwmL4JcsbJ7uiMYeLrvUddoLwS3nKIFpc010iHA0y4hE/k/ny4zOyDCEhVr3WvQE=
|
||||
Prime1: /R+fSD2bb3N6UoapSNFXYRFyBpHWtcv/AZqsJx60/4UTGOCWNj52kcGsI/ROz/Pwbdicxi8CQqjX0f4QjSCAdw==
|
||||
Prime2: 7S5MPtJNSa+fHZBavW6vDnqpiHxAO7lIAcgtGxMM3L3553OzarlJV88Z452tn4HhfCCaIUW20j8cOJvTLkPWwQ==
|
||||
Exponent1: 9v56YPWszM40GH9KhMGxsAhj6cE5cGBEz33saqfuGj/yaJ4ONZQyAvynStZEaWsxux5ZrJGGdSFop4JxCCUk9Q==
|
||||
Exponent2: W8dembCnV6wt1jLV6he6hc/Rao8qC/JWetoLGj706zZYTcfn1ZR9XQ02521MkjygFHhJLDbd192z/fPOdEisAQ==
|
||||
Coefficient: +W6uvg4HkWaKi6OCpCz/0fRQwaRtPSbpKJ2Anam4PAy+B6cgM3Yo48OB7o+WoexlgySsNL0ui5p4BvJWvtca7w==
|
||||
|
|
@ -1,23 +0,0 @@
|
|||
;
|
||||
; !!! Don't edit this file by hand.
|
||||
; !!! It will be generated by zkt-signer.
|
||||
;
|
||||
; Last generation time Mar 02 2010 10:59:46
|
||||
;
|
||||
|
||||
; *** List of Key Signing Keys ***
|
||||
; dyn.example.net. tag=52935 algo=NSEC3RSASHA1 generated Feb 21 2010 19:43:15
|
||||
dyn.example.net. 3600 IN DNSKEY 257 3 7 (
|
||||
AwEAAeqEDYgA5lns1VsMJiZfTWMEguameVmOoBYx8s1uLzmS/3APsh1e
|
||||
WCeoBgAjRry1tpM/bPowyuygE4H0LpzNQLm9RbjDmpDN8Gwi3AjEnG4H
|
||||
CT58TuAVxjiefN+vb1pvyFlAL58YOkuGf9tG/NJMNc+XrULAU1ey2dT9
|
||||
Fh+SCVO3
|
||||
) ; key id = 52935
|
||||
|
||||
; *** List of Zone Signing Keys ***
|
||||
; dyn.example.net. tag=30323 algo=NSEC3RSASHA1 generated Feb 21 2010 19:43:15
|
||||
dyn.example.net. 3600 IN DNSKEY 256 3 7 (
|
||||
AwEAAfqG0rb9Ear+Pv7xBg9lc9czF+2YUa8Ris63E/oRRGQEH5U/ZS3A
|
||||
xz3aOhPFKzAAhjfaG3vTNW3Wl4bl4ITFZrk=
|
||||
) ; key id = 30323
|
||||
|
||||
|
|
@ -1,161 +0,0 @@
|
|||
2010-02-21 19:43:15.018: debug: Check RFC5011 status
|
||||
2010-02-21 19:43:15.018: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-21 19:43:15.018: debug: Check KSK status
|
||||
2010-02-21 19:43:15.018: debug: No active KSK found: generate new one
|
||||
2010-02-21 19:43:15.330: info: "dyn.example.net.": generated new KSK 52935
|
||||
2010-02-21 19:43:15.330: debug: Check ZSK status
|
||||
2010-02-21 19:43:15.330: debug: No active ZSK found: generate new one
|
||||
2010-02-21 19:43:15.368: info: "dyn.example.net.": generated new ZSK 30323
|
||||
2010-02-21 19:43:15.368: debug: Re-signing necessary: Modfied zone key set
|
||||
2010-02-21 19:43:15.368: notice: "dyn.example.net.": re-signing triggered: Modfied zone key set
|
||||
2010-02-21 19:43:15.368: debug: Writing key file "./dyn.example.net/dnskey.db"
|
||||
2010-02-21 19:43:15.368: debug: Signing zone "dyn.example.net."
|
||||
2010-02-21 19:43:15.368: notice: "dyn.example.net.": freeze dynamic zone
|
||||
2010-02-21 19:43:15.368: debug: freeze dynamic zone "dyn.example.net."
|
||||
2010-02-21 19:43:15.368: debug: Run cmd "/usr/local/sbin/rndc freeze dyn.example.net."
|
||||
2010-02-21 19:43:15.374: debug: Dynamic Zone signing: copy old signed zone file ./dyn.example.net/zone.db.dsigned to new input file ./dyn.example.net/zone.db
|
||||
2010-02-21 19:43:15.374: debug: Run cmd "cd ./dyn.example.net; /usr/local/sbin/dnssec-signzone -n 1 -3 76931F -C -g -p -d ../keysets -o dyn.example.net. -e +518400 -N increment -f zone.db.dsigned zone.db K*.private 2>&1"
|
||||
2010-02-21 19:43:15.382: debug: Cmd dnssec-signzone return: "dnssec-signzone: fatal: Zone contains NSEC records. Use -u to update to NSEC3."
|
||||
2010-02-21 19:43:15.382: error: "dyn.example.net.": signing failed!
|
||||
2010-02-21 19:43:15.382: notice: "dyn.example.net.": thaw dynamic zone
|
||||
2010-02-21 19:43:15.382: debug: thaw dynamic zone "dyn.example.net."
|
||||
2010-02-21 19:43:15.382: debug: Run cmd "/usr/local/sbin/rndc thaw dyn.example.net."
|
||||
2010-02-21 19:45:36.415: debug: Check RFC5011 status
|
||||
2010-02-21 19:45:36.416: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-21 19:45:36.416: debug: Check KSK status
|
||||
2010-02-21 19:45:36.416: debug: Check ZSK status
|
||||
2010-02-21 19:45:36.416: debug: Re-signing not necessary!
|
||||
2010-02-21 19:45:36.416: debug: Check if there is a parent file to copy
|
||||
2010-02-21 19:45:41.448: debug: Check RFC5011 status
|
||||
2010-02-21 19:45:41.448: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-21 19:45:41.448: debug: Check KSK status
|
||||
2010-02-21 19:45:41.448: debug: Check ZSK status
|
||||
2010-02-21 19:45:41.448: debug: Re-signing necessary: Option -f
|
||||
2010-02-21 19:45:41.448: notice: "dyn.example.net.": re-signing triggered: Option -f
|
||||
2010-02-21 19:45:41.448: debug: Writing key file "./dyn.example.net/dnskey.db"
|
||||
2010-02-21 19:45:41.448: debug: Signing zone "dyn.example.net."
|
||||
2010-02-21 19:45:41.448: notice: "dyn.example.net.": freeze dynamic zone
|
||||
2010-02-21 19:45:41.448: debug: freeze dynamic zone "dyn.example.net."
|
||||
2010-02-21 19:45:41.448: debug: Run cmd "/usr/local/sbin/rndc freeze dyn.example.net."
|
||||
2010-02-21 19:45:41.457: debug: Dynamic Zone signing: copy old signed zone file ./dyn.example.net/zone.db.dsigned to new input file ./dyn.example.net/zone.db
|
||||
2010-02-21 19:45:41.458: debug: Run cmd "cd ./dyn.example.net; /usr/local/sbin/dnssec-signzone -n 1 -3 76931F -C -g -p -d ../keysets -o dyn.example.net. -e +518400 -N increment -f zone.db.dsigned zone.db K*.private 2>&1"
|
||||
2010-02-21 19:45:41.473: debug: Cmd dnssec-signzone return: "dnssec-signzone: fatal: NSEC3 generation requested with NSEC only DNSKEY"
|
||||
2010-02-21 19:45:41.473: error: "dyn.example.net.": signing failed!
|
||||
2010-02-21 19:45:41.473: notice: "dyn.example.net.": thaw dynamic zone
|
||||
2010-02-21 19:45:41.473: debug: thaw dynamic zone "dyn.example.net."
|
||||
2010-02-21 19:45:41.473: debug: Run cmd "/usr/local/sbin/rndc thaw dyn.example.net."
|
||||
2010-02-21 19:47:06.899: debug: Check RFC5011 status
|
||||
2010-02-21 19:47:06.899: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-21 19:47:06.899: debug: Check KSK status
|
||||
2010-02-21 19:47:06.899: debug: Check ZSK status
|
||||
2010-02-21 19:47:06.899: debug: Re-signing necessary: Option -f
|
||||
2010-02-21 19:47:06.899: notice: "dyn.example.net.": re-signing triggered: Option -f
|
||||
2010-02-21 19:47:06.899: debug: Writing key file "./dyn.example.net/dnskey.db"
|
||||
2010-02-21 19:47:06.900: debug: Signing zone "dyn.example.net."
|
||||
2010-02-21 19:47:06.900: notice: "dyn.example.net.": freeze dynamic zone
|
||||
2010-02-21 19:47:06.900: debug: freeze dynamic zone "dyn.example.net."
|
||||
2010-02-21 19:47:06.900: debug: Run cmd "/usr/local/sbin/rndc freeze dyn.example.net."
|
||||
2010-02-21 19:47:06.910: debug: Dynamic Zone signing: copy old signed zone file ./dyn.example.net/zone.db.dsigned to new input file ./dyn.example.net/zone.db
|
||||
2010-02-21 19:47:06.910: debug: Run cmd "cd ./dyn.example.net; /usr/local/sbin/dnssec-signzone -n 1 -3 76931F -C -g -p -d ../keysets -o dyn.example.net. -e +518400 -N increment -f zone.db.dsigned zone.db K*.private 2>&1"
|
||||
2010-02-21 19:47:06.926: debug: Cmd dnssec-signzone return: "dnssec-signzone: fatal: NSEC3 iterations too big for weakest DNSKEY strength. Maximum iterations allowed 0."
|
||||
2010-02-21 19:47:06.926: error: "dyn.example.net.": signing failed!
|
||||
2010-02-21 19:47:06.926: notice: "dyn.example.net.": thaw dynamic zone
|
||||
2010-02-21 19:47:06.926: debug: thaw dynamic zone "dyn.example.net."
|
||||
2010-02-21 19:47:06.926: debug: Run cmd "/usr/local/sbin/rndc thaw dyn.example.net."
|
||||
2010-02-21 19:58:40.972: debug: Check RFC5011 status
|
||||
2010-02-21 19:58:40.972: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-21 19:58:40.972: debug: Check KSK status
|
||||
2010-02-21 19:58:40.972: debug: Check ZSK status
|
||||
2010-02-21 19:58:40.973: debug: Re-signing necessary: Option -f
|
||||
2010-02-21 19:58:40.973: notice: "dyn.example.net.": re-signing triggered: Option -f
|
||||
2010-02-21 19:58:40.973: debug: Writing key file "./dyn.example.net/dnskey.db"
|
||||
2010-02-21 19:58:40.973: debug: Signing zone "dyn.example.net."
|
||||
2010-02-21 19:58:40.973: notice: "dyn.example.net.": freeze dynamic zone
|
||||
2010-02-21 19:58:40.973: debug: freeze dynamic zone "dyn.example.net."
|
||||
2010-02-21 19:58:40.973: debug: Run cmd "/usr/local/sbin/rndc freeze dyn.example.net."
|
||||
2010-02-21 19:58:40.982: debug: Dynamic Zone signing: zone file manually edited: Use it as new input file
|
||||
2010-02-21 19:58:40.982: debug: Dynamic Zone signing: copy old signed zone file ./dyn.example.net/zone.db.dsigned to new input file ./dyn.example.net/zone.db
|
||||
2010-02-21 19:58:40.983: debug: Run cmd "cd ./dyn.example.net; /usr/local/sbin/dnssec-signzone -n 1 -3 76931F -C -g -p -d ../keysets -o dyn.example.net. -e +518400 -N increment -f zone.db.dsigned zone.db K*.private 2>&1"
|
||||
2010-02-21 19:58:40.999: debug: Cmd dnssec-signzone return: "dnssec-signzone: fatal: NSEC3 iterations too big for weakest DNSKEY strength. Maximum iterations allowed 0."
|
||||
2010-02-21 19:58:40.999: error: "dyn.example.net.": signing failed!
|
||||
2010-02-21 19:58:40.999: notice: "dyn.example.net.": thaw dynamic zone
|
||||
2010-02-21 19:58:40.999: debug: thaw dynamic zone "dyn.example.net."
|
||||
2010-02-21 19:58:40.999: debug: Run cmd "/usr/local/sbin/rndc thaw dyn.example.net."
|
||||
2010-02-21 20:00:48.833: debug: Check RFC5011 status
|
||||
2010-02-21 20:00:48.833: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-21 20:00:48.833: debug: Check KSK status
|
||||
2010-02-21 20:00:48.833: debug: Check ZSK status
|
||||
2010-02-21 20:00:48.833: debug: Re-signing necessary: Option -f
|
||||
2010-02-21 20:00:48.833: notice: "dyn.example.net.": re-signing triggered: Option -f
|
||||
2010-02-21 20:00:48.833: debug: Writing key file "./dyn.example.net/dnskey.db"
|
||||
2010-02-21 20:00:48.834: debug: Signing zone "dyn.example.net."
|
||||
2010-02-21 20:00:48.834: notice: "dyn.example.net.": freeze dynamic zone
|
||||
2010-02-21 20:00:48.834: debug: freeze dynamic zone "dyn.example.net."
|
||||
2010-02-21 20:00:48.834: debug: Run cmd "/usr/local/sbin/rndc freeze dyn.example.net."
|
||||
2010-02-21 20:00:48.844: debug: Dynamic Zone signing: copy old signed zone file ./dyn.example.net/zone.db.dsigned to new input file ./dyn.example.net/zone.db
|
||||
2010-02-21 20:00:48.844: debug: Run cmd "cd ./dyn.example.net; /usr/local/sbin/dnssec-signzone -n 1 -3 76931F -C -g -p -d ../keysets -o dyn.example.net. -e +518400 -N increment -f zone.db.dsigned zone.db K*.private 2>&1"
|
||||
2010-02-21 20:00:48.878: debug: Cmd dnssec-signzone return: "zone.db.dsigned"
|
||||
2010-02-21 20:00:48.878: notice: "dyn.example.net.": thaw dynamic zone
|
||||
2010-02-21 20:00:48.878: debug: thaw dynamic zone "dyn.example.net."
|
||||
2010-02-21 20:00:48.878: debug: Run cmd "/usr/local/sbin/rndc thaw dyn.example.net."
|
||||
2010-02-21 20:00:48.884: debug: Signing completed after 0s.
|
||||
2010-02-21 20:01:11.175: debug: Check RFC5011 status
|
||||
2010-02-21 20:01:11.175: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-21 20:01:11.175: debug: Check KSK status
|
||||
2010-02-21 20:01:11.175: debug: Check ZSK status
|
||||
2010-02-21 20:01:11.176: debug: Re-signing necessary: Option -f
|
||||
2010-02-21 20:01:11.176: notice: "dyn.example.net.": re-signing triggered: Option -f
|
||||
2010-02-21 20:01:11.176: debug: Writing key file "./dyn.example.net/dnskey.db"
|
||||
2010-02-21 20:01:11.176: debug: Signing zone "dyn.example.net."
|
||||
2010-02-21 20:01:11.176: notice: "dyn.example.net.": freeze dynamic zone
|
||||
2010-02-21 20:01:11.176: debug: freeze dynamic zone "dyn.example.net."
|
||||
2010-02-21 20:01:11.176: debug: Run cmd "/usr/local/sbin/rndc freeze dyn.example.net."
|
||||
2010-02-21 20:01:11.181: debug: Dynamic Zone signing: copy old signed zone file ./dyn.example.net/zone.db.dsigned to new input file ./dyn.example.net/zone.db
|
||||
2010-02-21 20:01:11.181: debug: Run cmd "cd ./dyn.example.net; /usr/local/sbin/dnssec-signzone -n 1 -3 76931F -C -g -p -d ../keysets -o dyn.example.net. -e +518400 -N increment -f zone.db.dsigned zone.db K*.private 2>&1"
|
||||
2010-02-21 20:01:11.202: debug: Cmd dnssec-signzone return: "zone.db.dsigned"
|
||||
2010-02-21 20:01:11.202: notice: "dyn.example.net.": thaw dynamic zone
|
||||
2010-02-21 20:01:11.203: debug: thaw dynamic zone "dyn.example.net."
|
||||
2010-02-21 20:01:11.203: debug: Run cmd "/usr/local/sbin/rndc thaw dyn.example.net."
|
||||
2010-02-21 20:01:11.208: debug: Signing completed after 0s.
|
||||
2010-02-21 20:01:17.175: debug: Check RFC5011 status
|
||||
2010-02-21 20:01:17.175: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-21 20:01:17.175: debug: Check KSK status
|
||||
2010-02-21 20:01:17.175: debug: Check ZSK status
|
||||
2010-02-21 20:01:17.176: debug: Re-signing not necessary!
|
||||
2010-02-21 20:01:17.176: debug: Check if there is a parent file to copy
|
||||
2010-02-25 23:42:29.326: debug: Check RFC5011 status
|
||||
2010-02-25 23:42:29.326: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-25 23:42:29.326: debug: Check KSK status
|
||||
2010-02-25 23:42:29.326: debug: Check ZSK status
|
||||
2010-02-25 23:42:29.326: debug: Re-signing necessary: re-signing interval (2d) reached
|
||||
2010-02-25 23:42:29.326: notice: "dyn.example.net.": re-signing triggered: re-signing interval (2d) reached
|
||||
2010-02-25 23:42:29.326: debug: Writing key file "./dyn.example.net/dnskey.db"
|
||||
2010-02-25 23:42:29.327: debug: Signing zone "dyn.example.net."
|
||||
2010-02-25 23:42:29.327: notice: "dyn.example.net.": freeze dynamic zone
|
||||
2010-02-25 23:42:29.327: debug: freeze dynamic zone "dyn.example.net."
|
||||
2010-02-25 23:42:29.327: debug: Run cmd "/usr/local/sbin/rndc freeze dyn.example.net."
|
||||
2010-02-25 23:42:29.388: debug: Dynamic Zone signing: copy old signed zone file ./dyn.example.net/zone.db.dsigned to new input file ./dyn.example.net/zone.db
|
||||
2010-02-25 23:42:29.425: debug: Run cmd "cd ./dyn.example.net; /usr/local/sbin/dnssec-signzone -n 1 -u -3 76931F -C -g -p -d ../keysets -o dyn.example.net. -e +518400 -N increment -f zone.db.dsigned zone.db K*.private 2>&1"
|
||||
2010-02-25 23:42:29.471: debug: Cmd dnssec-signzone return: "zone.db.dsigned"
|
||||
2010-02-25 23:42:29.471: notice: "dyn.example.net.": thaw dynamic zone
|
||||
2010-02-25 23:42:29.471: debug: thaw dynamic zone "dyn.example.net."
|
||||
2010-02-25 23:42:29.471: debug: Run cmd "/usr/local/sbin/rndc thaw dyn.example.net."
|
||||
2010-02-25 23:42:29.486: debug: Signing completed after 0s.
|
||||
2010-03-02 10:59:46.770: debug: Check RFC5011 status
|
||||
2010-03-02 10:59:46.770: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-03-02 10:59:46.770: debug: Check KSK status
|
||||
2010-03-02 10:59:46.770: debug: Check ZSK status
|
||||
2010-03-02 10:59:46.770: debug: Re-signing necessary: re-signing interval (2d) reached
|
||||
2010-03-02 10:59:46.770: notice: "dyn.example.net.": re-signing triggered: re-signing interval (2d) reached
|
||||
2010-03-02 10:59:46.770: debug: Writing key file "./dyn.example.net/dnskey.db"
|
||||
2010-03-02 10:59:46.770: debug: Signing zone "dyn.example.net."
|
||||
2010-03-02 10:59:46.770: notice: "dyn.example.net.": freeze dynamic zone
|
||||
2010-03-02 10:59:46.770: debug: freeze dynamic zone "dyn.example.net."
|
||||
2010-03-02 10:59:46.770: debug: Run cmd "/usr/local/sbin/rndc freeze dyn.example.net."
|
||||
2010-03-02 10:59:46.852: debug: Dynamic Zone signing: copy old signed zone file ./dyn.example.net/zone.db.dsigned to new input file ./dyn.example.net/zone.db
|
||||
2010-03-02 10:59:46.875: debug: Run cmd "cd ./dyn.example.net; /usr/local/sbin/dnssec-signzone -n 1 -u -3 76931F -C -g -p -d ../keysets -o dyn.example.net. -e +518400 -N increment -f zone.db.dsigned zone.db K*.private 2>&1"
|
||||
2010-03-02 10:59:46.950: debug: Cmd dnssec-signzone return: "zone.db.dsigned"
|
||||
2010-03-02 10:59:46.950: notice: "dyn.example.net.": thaw dynamic zone
|
||||
2010-03-02 10:59:46.950: debug: thaw dynamic zone "dyn.example.net."
|
||||
2010-03-02 10:59:46.950: debug: Run cmd "/usr/local/sbin/rndc thaw dyn.example.net."
|
||||
2010-03-02 10:59:46.964: debug: Signing completed after 0s.
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20110125190230
|
||||
;% lifetime=63d
|
||||
example.net. IN DNSKEY 256 3 8 BQEAAAAB7desjYpHAzsGmTzPFFuG4KGIG7ne8tII7DIMRIFaxuSYbQz0 kwC61utqnqzcgCXJQiKJxpKBt/Ikaf2K4JW0gQ==
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 8 (RSASHA256)
|
||||
Modulus: 7desjYpHAzsGmTzPFFuG4KGIG7ne8tII7DIMRIFaxuSYbQz0kwC61utqnqzcgCXJQiKJxpKBt/Ikaf2K4JW0gQ==
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: IVO4lg5Ev/f/GpSRfYuXmUMH3qrv5Cr+ZAMqT+xGNJdyvlMAVV0ZDZehj/ar8brkm+sdrJ3LepVTEz0vLXPCgQ==
|
||||
Prime1: /Ru1X3jzyO19+aLhf/Hsu0WOdjn0MAWzKx0KwWPkxcs=
|
||||
Prime2: 8I9Q89DvF0qZqkF9kVzZ4B1LYdHz3uhKaxD40vu4xWM=
|
||||
Exponent1: fSAVRShndbuiQZtsVHyekvPH4Xjl1dJ3hF03O4InOAc=
|
||||
Exponent2: JJDvU+0J0KXaBArxDjoblXTKWVC3kGnLR+2AEpxei7k=
|
||||
Coefficient: RviZPpnVpS30oBPH1freoUgcXJ4bKnivP41BUxcVh4U=
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20110125091121
|
||||
;% lifetime=84d
|
||||
example.net. IN DNSKEY 256 3 8 BQEAAAABvX6JNSNXHzrqpKi2REOwcsAuGjWI1VCJlz1NzV/pIt9PqGnJ DqtlV3vxuy7fAu85Z5Syaikiyx/z2uT4VMCvxw==
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 8 (RSASHA256)
|
||||
Modulus: vX6JNSNXHzrqpKi2REOwcsAuGjWI1VCJlz1NzV/pIt9PqGnJDqtlV3vxuy7fAu85Z5Syaikiyx/z2uT4VMCvxw==
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: a77DD9J85SYlVi2lIKdzfHFkqtTFvQjTiLih+sx3lnhefQ5N20ABJVpTMwMOoA5tiDanSmKkk7O+GJXvI6E+KQ==
|
||||
Prime1: 7S87u5BoQFYbGZzGaBPAqznZt7X1g2J/qop4W9rziy0=
|
||||
Prime2: zIbOBuf2onI1ThmHXGPQEdQoFoJx3GqTkYjzUQQOL0M=
|
||||
Exponent1: YfyQEtL2twRiwb8RIlKR3OE/rhnfqZYr9dwgRa0qjAU=
|
||||
Exponent2: x73r1pDdvUShLs8hvmY0soX6a2Dcbokdf1D82/iCDU8=
|
||||
Coefficient: 1r/5mih7lqQx4ZIEcr8TmQWMscwDGk3eERsFuSYGt0c=
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20100924112635
|
||||
;% lifetime=365d
|
||||
example.net. IN DNSKEY 257 3 8 BQEAAAABC6qZRCQRp2qnmxvWal1kergOJ1xQ5wGD+HZFLEvsvD8sU0i1 BGJoeDK5N/07S7s0aYVdIViQ1/CmpqBgahnlOKAoMO3eYnTuFRE7HqJK 1CSN2+nvN1m+miz+vfSPSOLeP2u8GAwIJmq/gb78AWStvW6HAXrDfaiq vqb4MDZCvplachhyHfngVLFYI22tyivUmzN/pRBePYGQ1nVsK1cPYDPp 4Q==
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 8 (RSASHA256)
|
||||
Modulus: C6qZRCQRp2qnmxvWal1kergOJ1xQ5wGD+HZFLEvsvD8sU0i1BGJoeDK5N/07S7s0aYVdIViQ1/CmpqBgahnlOKAoMO3eYnTuFRE7HqJK1CSN2+nvN1m+miz+vfSPSOLeP2u8GAwIJmq/gb78AWStvW6HAXrDfaiqvqb4MDZCvplachhyHfngVLFYI22tyivUmzN/pRBePYGQ1nVsK1cPYDPp4Q==
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: A3MjVh+KkQuwpnsGnr/xPRs8PfwUIDu7NYQVKpQAttLnZPOEXsjPniy3QuBpIMnnBCbxYaOV0ctiYQOx6vU8qprrSD8OfXXI8OhBNgExvw/Bsfki3MQINAHX0wY9juuIoMLKdqcMpsUC6ILE4FSkcc+jVFbTrDqjQgDDykkpABrlG1SUz51hLOZMAz2vu8QE8m57LaPUPpRhNPf4J2dDfkX/KQ==
|
||||
Prime1: A3lFNBrVdcJBUq0ekPjtEZ0xCOTgSgUHAB+KJkdpiB0tV0jYf1Yaj7Kr98pKIM8jaZOhQnEKhAD947h4XG6IuxgraCNWonOyt5Yo9WjXFHzK0w==
|
||||
Prime2: A1vFf9Tp7MxblYWLsFUsMZxXVRxPpeoGtwmNm24k5bUPpH6/B7Yd8DcE6O3cYyHcShq8sZcuOuPhNkGwgg7IMRABXcLyCXqoEKvy0nhnbKCf+w==
|
||||
Exponent1: AQKRURkK7K15jiVVpw4nhd7Qtck1GkZon10UCQ5p2iE+weL+qhzi5L9u5mXLVaeGffwGkMkU6wvj5KSAuEiJr08+AxWfLy3Tf1fbiaiimPGDNQ==
|
||||
Exponent2: AfnXuwDet4BuUGa8EHswqADRk0XeWtxztKQ48YOh5Q5/3rauIIMm+6ERfu0gWfnkYaRNamKSXMDVC5PUQHT33u0gGnopMipao6xICXGxbrGhCQ==
|
||||
Coefficient: AYM1htjFUUAPKrVoajGJF+wLlQHBR3vrylKNpT5IFqr6Qczw54kfhx9n/18vIvtGIpj07xSEIfgBf+itZIRxPOwphkwaJXmHZKpYHpEvdqiyjA==
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 8 (RSASHA256)
|
||||
Modulus: 2IOedrEUxH0Mxn3f24ZP9b5r+SHcFyFZ2vXNIqmuILVO40MrW+R4H0UsQURAfKTFZeka2EsC7CEIyuEgkloDBQ==
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: FzC3Jdpl35o/UUyvZ/7sc8BRpfDuIgMnHA1a9WwxZz20Tqki3snE/Nz4ePNNv/5LGrzFlOnPtEd1GT2biUKzVQ==
|
||||
Prime1: /4YvvO0nbMJxZ4dHbYKl2pGe0hSgEUYnTNnuVbSEKrM=
|
||||
Prime2: 2OrV7XGOYCMXr/WIrD0NCBnqU1tsizPQNMIjwXuuV2c=
|
||||
Exponent1: 63ub+oH78z6TercHscYOS7HpYttDzC1YV3oupGyRNDs=
|
||||
Exponent2: A4HpxW8K6ivUb2RbKDBaze8ivr5u41hJPsbn4FQzB3E=
|
||||
Coefficient: Lz1Gg/PtC9HOrhFORXlzzkzb+5PeFIGq43mtGx7oAUo=
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20100924112635
|
||||
;% lifetime=84d
|
||||
example.net. IN DNSKEY 256 3 8 BQEAAAAB2IOedrEUxH0Mxn3f24ZP9b5r+SHcFyFZ2vXNIqmuILVO40Mr W+R4H0UsQURAfKTFZeka2EsC7CEIyuEgkloDBQ==
|
||||
|
|
@ -1,36 +0,0 @@
|
|||
;
|
||||
; !!! Don't edit this file by hand.
|
||||
; !!! It will be generated by zkt-signer.
|
||||
;
|
||||
; Last generation time Jan 25 2011 20:02:30
|
||||
;
|
||||
|
||||
; *** List of Key Signing Keys ***
|
||||
; example.net. tag=52101 algo=RSASHA256 generated Sep 24 2010 13:26:35
|
||||
example.net. 14400 IN DNSKEY 257 3 8 (
|
||||
BQEAAAABC6qZRCQRp2qnmxvWal1kergOJ1xQ5wGD+HZFLEvsvD8sU0i1
|
||||
BGJoeDK5N/07S7s0aYVdIViQ1/CmpqBgahnlOKAoMO3eYnTuFRE7HqJK
|
||||
1CSN2+nvN1m+miz+vfSPSOLeP2u8GAwIJmq/gb78AWStvW6HAXrDfaiq
|
||||
vqb4MDZCvplachhyHfngVLFYI22tyivUmzN/pRBePYGQ1nVsK1cPYDPp
|
||||
4Q==
|
||||
) ; key id = 52101
|
||||
|
||||
; *** List of Zone Signing Keys ***
|
||||
; example.net. tag=21605 algo=RSASHA256 generated Jan 25 2011 19:39:25
|
||||
example.net. 14400 IN DNSKEY 256 3 8 (
|
||||
BQEAAAABvX6JNSNXHzrqpKi2REOwcsAuGjWI1VCJlz1NzV/pIt9PqGnJ
|
||||
DqtlV3vxuy7fAu85Z5Syaikiyx/z2uT4VMCvxw==
|
||||
) ; key id = 21605
|
||||
|
||||
; example.net. tag=56360 algo=RSASHA256 generated Jan 25 2011 19:39:25
|
||||
example.net. 14400 IN DNSKEY 256 3 8 (
|
||||
BQEAAAAB2IOedrEUxH0Mxn3f24ZP9b5r+SHcFyFZ2vXNIqmuILVO40Mr
|
||||
W+R4H0UsQURAfKTFZeka2EsC7CEIyuEgkloDBQ==
|
||||
) ; key id = 56360
|
||||
|
||||
; example.net. tag=2957 algo=RSASHA256 generated Jan 25 2011 20:02:30
|
||||
example.net. 14400 IN DNSKEY 256 3 8 (
|
||||
BQEAAAAB7desjYpHAzsGmTzPFFuG4KGIG7ne8tII7DIMRIFaxuSYbQz0
|
||||
kwC61utqnqzcgCXJQiKJxpKBt/Ikaf2K4JW0gQ==
|
||||
) ; key id = 2957
|
||||
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
Key_Algo: RSASHA256 # (Algorithm ID 8)
|
||||
NSEC3: OPTOUT
|
||||
ZSKpermanent: true
|
||||
|
|
@ -1,34 +0,0 @@
|
|||
;-----------------------------------------------------------------
|
||||
;
|
||||
; @(#) example.net/zone.db
|
||||
;
|
||||
;-----------------------------------------------------------------
|
||||
|
||||
$TTL 7200
|
||||
|
||||
@ IN SOA ns1.example.net. hostmaster.example.net. (
|
||||
353 ; Serial
|
||||
43200 ; Refresh
|
||||
1800 ; Retry
|
||||
2W ; Expire
|
||||
7200 ) ; Minimum
|
||||
|
||||
IN NS ns1.example.net.
|
||||
|
||||
ns1 IN A 1.0.0.5
|
||||
|
||||
example.net. 3600 IN DNSKEY 257 3 5 (
|
||||
BQEAAAABCwxfQLjMaLsvSPFYMFyi/Z5l6f/y1fNROZtCrUSAFca8c4Dc
|
||||
+MK9phlqEtBihnMSBjFsuhyq1w++ubzZF3rVduVXP+loeEW5cGXneM4n
|
||||
m52unLpZfQu0B0h/zwDLrfmedyqqZYb7grXDqFwT0EnI4cL/Ybr40H7u
|
||||
SUyVyLM3c5a8V5RDA2t1PImy7UURv6qusCsRslw+mM5jG0S7Il5cqhug
|
||||
aQ==
|
||||
) ; key id = 33840
|
||||
|
||||
example.net. 3600 IN DNSKEY 256 3 5 (
|
||||
BQEAAAABzN3RkyF1Kvf3Go97BN7rNERR86F0nxfyHfXpMdwtqrMFSrkd
|
||||
IboUDtNZBsw+LJmadHRQZDfu79tEz8MUid7aOw==
|
||||
) ; key id = 48089
|
||||
|
||||
_domainkey IN NS ns1.example.net.
|
||||
|
||||
|
|
@ -1,512 +0,0 @@
|
|||
2010-02-06 00:26:54.533: debug: Check RFC5011 status
|
||||
2010-02-06 00:26:54.533: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-06 00:26:54.533: debug: Check KSK status
|
||||
2010-02-06 00:26:54.533: debug: Check ZSK status
|
||||
2010-02-06 00:26:54.533: debug: Re-signing not necessary!
|
||||
2010-02-06 00:26:54.533: debug: Check if there is a parent file to copy
|
||||
2010-02-06 00:29:31.291: debug: Check RFC5011 status
|
||||
2010-02-06 00:29:31.291: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-06 00:29:31.291: debug: Check KSK status
|
||||
2010-02-06 00:29:31.292: debug: Check ZSK status
|
||||
2010-02-06 00:29:31.292: debug: Re-signing not necessary!
|
||||
2010-02-06 00:29:31.292: debug: Check if there is a parent file to copy
|
||||
2010-02-06 00:40:35.043: debug: Check RFC5011 status
|
||||
2010-02-06 00:40:35.043: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-06 00:40:35.043: debug: Check KSK status
|
||||
2010-02-06 00:40:35.043: debug: Check ZSK status
|
||||
2010-02-06 00:40:35.043: debug: Re-signing not necessary!
|
||||
2010-02-06 00:40:35.043: debug: Check if there is a parent file to copy
|
||||
2010-02-06 00:52:55.403: debug: Check RFC5011 status
|
||||
2010-02-06 00:52:55.403: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-06 00:52:55.403: debug: Check KSK status
|
||||
2010-02-06 00:52:55.403: debug: Check ZSK status
|
||||
2010-02-06 00:52:55.403: debug: Re-signing not necessary!
|
||||
2010-02-06 00:52:55.403: debug: Check if there is a parent file to copy
|
||||
2010-02-07 13:53:48.304: debug: Check RFC5011 status
|
||||
2010-02-07 13:53:48.304: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-07 13:53:48.304: debug: Check KSK status
|
||||
2010-02-07 13:53:48.304: debug: Check ZSK status
|
||||
2010-02-07 13:53:48.304: debug: Re-signing not necessary!
|
||||
2010-02-07 13:53:48.304: debug: Check if there is a parent file to copy
|
||||
2010-02-07 13:54:03.466: debug: Check RFC5011 status
|
||||
2010-02-07 13:54:03.466: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-07 13:54:03.466: debug: Check KSK status
|
||||
2010-02-07 13:54:03.466: debug: Check ZSK status
|
||||
2010-02-07 13:54:03.466: debug: Re-signing not necessary!
|
||||
2010-02-07 13:54:03.466: debug: Check if there is a parent file to copy
|
||||
2010-02-07 13:54:08.019: debug: Check RFC5011 status
|
||||
2010-02-07 13:54:08.019: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-07 13:54:08.020: debug: Check KSK status
|
||||
2010-02-07 13:54:08.020: debug: Check ZSK status
|
||||
2010-02-07 13:54:08.020: debug: Re-signing necessary: Option -f
|
||||
2010-02-07 13:54:08.020: notice: "example.net.": re-signing triggered: Option -f
|
||||
2010-02-07 13:54:08.020: debug: Writing key file "./example.net/dnskey.db"
|
||||
2010-02-07 13:54:08.020: debug: Incrementing serial number in file "./example.net/zone.db"
|
||||
2010-02-07 13:54:08.020: debug: Signing zone "example.net."
|
||||
2010-02-07 13:54:08.021: debug: Run cmd "cd ./example.net; /usr/local/sbin/dnssec-signzone -n 1 -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-02-07 13:54:08.125: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-02-07 13:54:08.125: debug: Signing completed after 0s.
|
||||
2010-02-07 13:54:08.125: notice: "example.net.": distribution triggered
|
||||
2010-02-07 13:54:08.125: debug: Distribute zone "example.net."
|
||||
2010-02-07 13:54:08.125: debug: Run cmd "./dist.sh distribute example.net. ./example.net/zone.db.signed "
|
||||
2010-02-07 13:54:08.129: debug: ./dist.sh distribute return: "scp ./example.net/zone.db.signed localhost:/var/named/example.net./"
|
||||
2010-02-07 13:54:08.129: notice: "example.net.": reload triggered
|
||||
2010-02-07 13:54:08.129: debug: Reload zone "example.net."
|
||||
2010-02-07 13:54:08.129: debug: Run cmd "./dist.sh reload example.net. ./example.net/zone.db.signed "
|
||||
2010-02-07 13:54:08.139: debug: ./dist.sh reload return: "rndc reload example.net. "
|
||||
2010-02-07 14:06:27.670: debug: Check RFC5011 status
|
||||
2010-02-07 14:06:27.670: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-07 14:06:27.670: debug: Check KSK status
|
||||
2010-02-07 14:06:27.670: debug: Check ZSK status
|
||||
2010-02-07 14:06:27.670: debug: Re-signing not necessary!
|
||||
2010-02-07 14:06:27.671: debug: Check if there is a parent file to copy
|
||||
2010-02-07 14:06:33.753: debug: Check RFC5011 status
|
||||
2010-02-07 14:06:33.753: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-07 14:06:33.753: debug: Check KSK status
|
||||
2010-02-07 14:06:33.753: debug: Check ZSK status
|
||||
2010-02-07 14:06:33.753: debug: Re-signing necessary: Option -f
|
||||
2010-02-07 14:06:33.753: notice: "example.net.": re-signing triggered: Option -f
|
||||
2010-02-07 14:06:33.753: debug: Writing key file "./example.net/dnskey.db"
|
||||
2010-02-07 14:06:33.754: debug: Incrementing serial number in file "./example.net/zone.db"
|
||||
2010-02-07 14:06:33.754: debug: Signing zone "example.net."
|
||||
2010-02-07 14:06:33.754: debug: Run cmd "cd ./example.net; /usr/local/sbin/dnssec-signzone -n 1 -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-02-07 14:06:33.790: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-02-07 14:06:33.790: debug: Signing completed after 0s.
|
||||
2010-02-07 14:06:33.790: notice: "example.net.": distribution triggered
|
||||
2010-02-07 14:06:33.790: debug: Distribute zone "example.net."
|
||||
2010-02-07 14:06:33.790: debug: Run cmd "./dist.sh distribute example.net. ./example.net/zone.db.signed "
|
||||
2010-02-07 14:06:33.794: debug: ./dist.sh distribute return: "scp ./example.net/zone.db.signed localhost:/var/named/example.net./"
|
||||
2010-02-07 14:06:33.794: notice: "example.net.": reload triggered
|
||||
2010-02-07 14:06:33.794: debug: Reload zone "example.net."
|
||||
2010-02-07 14:06:33.794: debug: Run cmd "./dist.sh reload example.net. ./example.net/zone.db.signed "
|
||||
2010-02-07 14:06:33.797: debug: ./dist.sh reload return: "rndc reload example.net. "
|
||||
2010-02-21 12:50:43.587: debug: Check RFC5011 status
|
||||
2010-02-21 12:50:43.587: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-21 12:50:43.587: debug: Check KSK status
|
||||
2010-02-21 12:50:43.587: debug: Check ZSK status
|
||||
2010-02-21 12:50:43.587: debug: Lifetime(1209600 +/-150 sec) of active key 33002 exceeded (2394625 sec)
|
||||
2010-02-21 12:50:43.587: debug: ->depreciate it
|
||||
2010-02-21 12:50:43.587: debug: ->activate published key 29240
|
||||
2010-02-21 12:50:43.587: notice: "example.net.": lifetime of zone signing key 33002 exceeded: ZSK rollover done
|
||||
2010-02-21 12:50:43.587: debug: New key for publishing needed
|
||||
2010-02-21 12:50:43.658: debug: ->creating new key 5525
|
||||
2010-02-21 12:50:43.658: info: "example.net.": new key 5525 generated for publishing
|
||||
2010-02-21 12:50:43.658: debug: Re-signing necessary: Modfied zone key set
|
||||
2010-02-21 12:50:43.658: notice: "example.net.": re-signing triggered: Modfied zone key set
|
||||
2010-02-21 12:50:43.658: debug: Writing key file "./example.net/dnskey.db"
|
||||
2010-02-21 12:50:43.665: debug: Incrementing serial number in file "./example.net/zone.db"
|
||||
2010-02-21 12:50:43.665: debug: Signing zone "example.net."
|
||||
2010-02-21 12:50:43.665: debug: Run cmd "cd ./example.net; /usr/local/sbin/dnssec-signzone -n 1 -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-02-21 12:50:43.733: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-02-21 12:50:43.733: debug: Signing completed after 0s.
|
||||
2010-02-21 12:50:51.205: debug: Check RFC5011 status
|
||||
2010-02-21 12:50:51.205: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-21 12:50:51.205: debug: Check KSK status
|
||||
2010-02-21 12:50:51.205: debug: Check ZSK status
|
||||
2010-02-21 12:50:51.205: debug: Re-signing not necessary!
|
||||
2010-02-21 12:50:51.205: debug: Check if there is a parent file to copy
|
||||
2010-02-21 12:51:23.497: debug: Check RFC5011 status
|
||||
2010-02-21 12:51:23.497: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-21 12:51:23.497: debug: Check KSK status
|
||||
2010-02-21 12:51:23.497: debug: Check ZSK status
|
||||
2010-02-21 12:51:23.497: debug: Re-signing not necessary!
|
||||
2010-02-21 12:51:23.497: debug: Check if there is a parent file to copy
|
||||
2010-02-21 19:16:18.594: debug: Check RFC5011 status
|
||||
2010-02-21 19:16:18.594: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-21 19:16:18.594: debug: Check KSK status
|
||||
2010-02-21 19:16:18.594: debug: Check ZSK status
|
||||
2010-02-21 19:16:18.594: debug: Re-signing not necessary!
|
||||
2010-02-21 19:16:18.594: debug: Check if there is a parent file to copy
|
||||
2010-02-21 19:32:11.378: debug: Check RFC5011 status
|
||||
2010-02-21 19:32:11.378: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-21 19:32:11.378: debug: Check KSK status
|
||||
2010-02-21 19:32:11.378: debug: Check ZSK status
|
||||
2010-02-21 19:32:11.378: debug: Re-signing not necessary!
|
||||
2010-02-21 19:32:11.378: debug: Check if there is a parent file to copy
|
||||
2010-02-21 19:32:15.982: debug: Check RFC5011 status
|
||||
2010-02-21 19:32:15.982: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-21 19:32:15.982: debug: Check KSK status
|
||||
2010-02-21 19:32:15.982: debug: Check ZSK status
|
||||
2010-02-21 19:32:15.982: debug: Re-signing necessary: Option -f
|
||||
2010-02-21 19:32:15.982: notice: "example.net.": re-signing triggered: Option -f
|
||||
2010-02-21 19:32:15.982: debug: Writing key file "./example.net/dnskey.db"
|
||||
2010-02-21 19:32:15.982: debug: Incrementing serial number in file "./example.net/zone.db"
|
||||
2010-02-21 19:32:15.982: debug: Signing zone "example.net."
|
||||
2010-02-21 19:32:15.982: debug: Run cmd "cd ./example.net; /usr/local/sbin/dnssec-signzone -n 1 -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-02-21 19:32:16.019: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-02-21 19:32:16.019: debug: Signing completed after 1s.
|
||||
2010-02-21 19:32:32.232: debug: Check RFC5011 status
|
||||
2010-02-21 19:32:32.232: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-21 19:32:32.233: debug: Check KSK status
|
||||
2010-02-21 19:32:32.233: debug: Check ZSK status
|
||||
2010-02-21 19:32:32.233: debug: Re-signing necessary: Option -f
|
||||
2010-02-21 19:32:32.233: notice: "example.net.": re-signing triggered: Option -f
|
||||
2010-02-21 19:32:32.233: debug: Writing key file "./example.net/dnskey.db"
|
||||
2010-02-21 19:32:32.233: debug: Incrementing serial number in file "./example.net/zone.db"
|
||||
2010-02-21 19:32:32.233: debug: Signing zone "example.net."
|
||||
2010-02-21 19:32:32.233: debug: Run cmd "cd ./example.net; /usr/local/sbin/dnssec-signzone -n 1 -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-02-21 19:32:32.273: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-02-21 19:32:32.273: debug: Signing completed after 0s.
|
||||
2010-02-25 00:12:27.060: debug: Check RFC5011 status
|
||||
2010-02-25 00:12:27.060: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-25 00:12:27.060: debug: Check KSK status
|
||||
2010-02-25 00:12:27.060: debug: Check ZSK status
|
||||
2010-02-25 00:12:27.060: debug: Lifetime(29100 sec) of depreciated key 33002 exceeded (300104 sec)
|
||||
2010-02-25 00:12:27.060: info: "example.net.": old ZSK 33002 removed
|
||||
2010-02-25 00:12:27.081: debug: ->remove it
|
||||
2010-02-25 00:12:27.082: debug: Re-signing necessary: Modfied zone key set
|
||||
2010-02-25 00:12:27.082: notice: "example.net.": re-signing triggered: Modfied zone key set
|
||||
2010-02-25 00:12:27.082: debug: Writing key file "./example.net/dnskey.db"
|
||||
2010-02-25 00:12:27.086: debug: Incrementing serial number in file "./example.net/zone.db"
|
||||
2010-02-25 00:12:27.086: debug: Signing zone "example.net."
|
||||
2010-02-25 00:12:27.086: debug: Run cmd "cd ./example.net; /usr/local/sbin/dnssec-signzone -n 1 -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-02-25 00:12:27.173: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-02-25 00:12:27.174: debug: Signing completed after 0s.
|
||||
2010-02-25 23:42:21.013: debug: Check RFC5011 status
|
||||
2010-02-25 23:42:21.013: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-02-25 23:42:21.013: debug: Check KSK status
|
||||
2010-02-25 23:42:21.013: debug: Check ZSK status
|
||||
2010-02-25 23:42:21.013: debug: Re-signing not necessary!
|
||||
2010-02-25 23:42:21.013: debug: Check if there is a parent file to copy
|
||||
2010-03-02 10:59:12.416: debug: Check RFC5011 status
|
||||
2010-03-02 10:59:12.416: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-03-02 10:59:12.416: debug: Check KSK status
|
||||
2010-03-02 10:59:12.416: debug: Check ZSK status
|
||||
2010-03-02 10:59:12.416: debug: Re-signing necessary: re-signing interval (2d) reached
|
||||
2010-03-02 10:59:12.416: notice: "example.net.": re-signing triggered: re-signing interval (2d) reached
|
||||
2010-03-02 10:59:12.416: debug: Writing key file "./example.net/dnskey.db"
|
||||
2010-03-02 10:59:12.449: debug: Incrementing serial number in file "./example.net/zone.db"
|
||||
2010-03-02 10:59:12.449: debug: Signing zone "example.net."
|
||||
2010-03-02 10:59:12.450: debug: Run cmd "cd ./example.net; /usr/local/sbin/dnssec-signzone -n 1 -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-03-02 10:59:12.530: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-03-02 10:59:12.530: debug: Signing completed after 0s.
|
||||
2010-03-03 23:22:00.415: debug: Check RFC5011 status
|
||||
2010-03-03 23:22:00.415: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-03-03 23:22:00.415: debug: Check KSK status
|
||||
2010-03-03 23:22:00.415: debug: Check ZSK status
|
||||
2010-03-03 23:22:00.416: debug: Re-signing not necessary!
|
||||
2010-03-03 23:22:00.416: debug: Check if there is a parent file to copy
|
||||
2010-03-08 23:11:50.170: debug: Check RFC5011 status
|
||||
2010-03-08 23:11:50.170: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-03-08 23:11:50.170: debug: Check KSK status
|
||||
2010-03-08 23:11:50.170: debug: Check ZSK status
|
||||
2010-03-08 23:11:50.171: debug: Lifetime(1209600 +/-150 sec) of active key 29240 exceeded (1333267 sec)
|
||||
2010-03-08 23:11:50.171: debug: ->depreciate it
|
||||
2010-03-08 23:11:50.171: debug: ->activate published key 5525
|
||||
2010-03-08 23:11:50.171: notice: "example.net.": lifetime of zone signing key 29240 exceeded: ZSK rollover done
|
||||
2010-03-08 23:11:50.171: debug: New key for publishing needed
|
||||
2010-03-08 23:11:50.228: debug: ->creating new key 21482
|
||||
2010-03-08 23:11:50.228: info: "example.net.": new key 21482 generated for publishing
|
||||
2010-03-08 23:11:50.228: debug: Re-signing necessary: Modfied zone key set
|
||||
2010-03-08 23:11:50.228: notice: "example.net.": re-signing triggered: Modfied zone key set
|
||||
2010-03-08 23:11:50.228: debug: Writing key file "././example.net/dnskey.db"
|
||||
2010-03-08 23:11:50.235: debug: Incrementing serial number in file "././example.net/zone.db"
|
||||
2010-03-08 23:11:50.235: debug: Signing zone "example.net."
|
||||
2010-03-08 23:11:50.235: debug: Run cmd "cd ././example.net; /usr/local/sbin/dnssec-signzone -n 1 -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-03-08 23:11:50.294: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-03-08 23:11:50.294: debug: Signing completed after 0s.
|
||||
2010-03-08 23:12:56.212: debug: Check RFC5011 status
|
||||
2010-03-08 23:12:56.212: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-03-08 23:12:56.212: debug: Check KSK status
|
||||
2010-03-08 23:12:56.212: debug: Check ZSK status
|
||||
2010-03-08 23:12:56.212: debug: Re-signing necessary: Modfied zone key set
|
||||
2010-03-08 23:12:56.212: notice: "example.net.": re-signing triggered: Modfied zone key set
|
||||
2010-03-08 23:12:56.212: debug: Writing key file "././example.net/dnskey.db"
|
||||
2010-03-08 23:12:56.213: debug: Incrementing serial number in file "././example.net/zone.db"
|
||||
2010-03-08 23:12:56.213: debug: Signing zone "example.net."
|
||||
2010-03-08 23:12:56.213: debug: Run cmd "cd ././example.net; /usr/local/sbin/dnssec-signzone -n 1 -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-03-08 23:12:56.278: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-03-08 23:12:56.279: debug: Signing completed after 0s.
|
||||
2010-03-08 23:13:36.984: debug: Check RFC5011 status
|
||||
2010-03-08 23:13:36.984: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-03-08 23:13:36.984: debug: Check KSK status
|
||||
2010-03-08 23:13:36.984: debug: Check ZSK status
|
||||
2010-03-08 23:13:36.985: debug: Re-signing not necessary!
|
||||
2010-03-08 23:13:36.985: debug: Check if there is a parent file to copy
|
||||
2010-03-08 23:18:52.287: debug: Check RFC5011 status
|
||||
2010-03-08 23:18:52.287: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-03-08 23:18:52.287: debug: Check KSK status
|
||||
2010-03-08 23:18:52.287: debug: Check ZSK status
|
||||
2010-03-08 23:18:52.287: debug: Re-signing not necessary!
|
||||
2010-03-08 23:18:52.287: debug: Check if there is a parent file to copy
|
||||
2010-03-11 23:46:35.831: debug: Check RFC5011 status
|
||||
2010-03-11 23:46:35.831: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-03-11 23:46:35.831: debug: Check KSK status
|
||||
2010-03-11 23:46:35.831: debug: Check ZSK status
|
||||
2010-03-11 23:46:35.831: debug: Lifetime(29100 sec) of depreciated key 29240 exceeded (261285 sec)
|
||||
2010-03-11 23:46:35.831: info: "example.net.": old ZSK 29240 removed
|
||||
2010-03-11 23:46:35.832: debug: ->remove it
|
||||
2010-03-11 23:46:35.832: debug: Re-signing necessary: Modfied zone key set
|
||||
2010-03-11 23:46:35.832: notice: "example.net.": re-signing triggered: Modfied zone key set
|
||||
2010-03-11 23:46:35.832: debug: Writing key file "./example.net/dnskey.db"
|
||||
2010-03-11 23:46:35.841: debug: Incrementing serial number in file "./example.net/zone.db"
|
||||
2010-03-11 23:46:35.841: debug: Signing zone "example.net."
|
||||
2010-03-11 23:46:35.841: debug: Run cmd "cd ./example.net; /usr/local/sbin/dnssec-signzone -n 1 -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-03-11 23:46:35.929: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-03-11 23:46:35.929: debug: Signing completed after 0s.
|
||||
2010-03-11 23:52:33.132: debug: Check RFC5011 status
|
||||
2010-03-11 23:52:33.132: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-03-11 23:52:33.133: debug: Check KSK status
|
||||
2010-03-11 23:52:33.133: debug: No active KSK found: generate new one
|
||||
2010-03-11 23:52:33.374: info: "example.net.": generated new KSK 8406
|
||||
2010-03-11 23:52:33.374: debug: Check ZSK status
|
||||
2010-03-11 23:52:33.374: debug: No active ZSK found: generate new one
|
||||
2010-03-11 23:52:33.400: info: "example.net.": generated new ZSK 36257
|
||||
2010-03-11 23:52:33.400: debug: Re-signing necessary: Modfied zone key set
|
||||
2010-03-11 23:52:33.400: notice: "example.net.": re-signing triggered: Modfied zone key set
|
||||
2010-03-11 23:52:33.400: debug: Writing key file "./example.net/dnskey.db"
|
||||
2010-03-11 23:52:33.400: debug: Incrementing serial number in file "./example.net/zone.db"
|
||||
2010-03-11 23:52:33.400: debug: Signing zone "example.net."
|
||||
2010-03-11 23:52:33.400: debug: Run cmd "cd ./example.net; /usr/local/sbin/dnssec-signzone -n 1 -u -A -3 69AE05 -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-03-11 23:52:33.408: debug: Cmd dnssec-signzone return: "dnssec-signzone: fatal: NSEC3 generation requested with NSEC only DNSKEY"
|
||||
2010-03-11 23:52:33.408: error: "example.net.": signing failed!
|
||||
2010-03-11 23:53:27.856: debug: Check RFC5011 status
|
||||
2010-03-11 23:53:27.856: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-03-11 23:53:27.856: debug: Check KSK status
|
||||
2010-03-11 23:53:27.856: debug: Check ZSK status
|
||||
2010-03-11 23:53:27.856: debug: Re-signing necessary: Modified keys
|
||||
2010-03-11 23:53:27.856: notice: "example.net.": re-signing triggered: Modified keys
|
||||
2010-03-11 23:53:27.856: debug: Writing key file "./example.net/dnskey.db"
|
||||
2010-03-11 23:53:27.856: debug: Incrementing serial number in file "./example.net/zone.db"
|
||||
2010-03-11 23:53:27.856: debug: Signing zone "example.net."
|
||||
2010-03-11 23:53:27.856: debug: Run cmd "cd ./example.net; /usr/local/sbin/dnssec-signzone -n 1 -u -A -3 67AA7F -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-03-11 23:53:27.920: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-03-11 23:53:27.920: debug: Signing completed after 0s.
|
||||
2010-07-05 08:15:24.179: debug: Check RFC5011 status
|
||||
2010-07-05 08:15:24.179: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-07-05 08:15:24.179: debug: Check KSK status
|
||||
2010-07-05 08:15:24.179: warning: "example.net.": lifetime of key signing key 8406 exceeded since 4w5d12h49m44s
|
||||
2010-07-05 08:15:24.179: debug: Check ZSK status
|
||||
2010-07-05 08:15:24.179: debug: Lifetime(1209600 +/-150 sec) of active key 36257 exceeded (8081384 sec)
|
||||
2010-07-05 08:15:24.179: debug: ->waiting for published key
|
||||
2010-07-05 08:15:24.179: notice: "example.net.": lifetime of zone signing key 36257 exceeded since 11w2d12h49m44s: ZSK rollover deferred: waiting for published key
|
||||
2010-07-05 08:15:24.179: debug: New key for publishing needed
|
||||
2010-07-05 08:15:24.278: debug: ->creating new key 48476
|
||||
2010-07-05 08:15:24.278: info: "example.net.": new key 48476 generated for publishing
|
||||
2010-07-05 08:15:24.278: debug: Re-signing necessary: Modfied zone key set
|
||||
2010-07-05 08:15:24.278: notice: "example.net.": re-signing triggered: Modfied zone key set
|
||||
2010-07-05 08:15:24.278: debug: Writing key file "./example.net/dnskey.db"
|
||||
2010-07-05 08:15:24.278: debug: Incrementing serial number in file "./example.net/zone.db"
|
||||
2010-07-05 08:15:24.278: debug: Signing zone "example.net."
|
||||
2010-07-05 08:15:24.278: debug: Run cmd "cd ./example.net; /usr/local/sbin/dnssec-signzone -n 1 -u -A -3 5816F0 -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-07-05 08:15:24.315: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-07-05 08:15:24.315: debug: Signing completed after 0s.
|
||||
2010-07-05 08:15:28.174: debug: Check RFC5011 status
|
||||
2010-07-05 08:15:28.174: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-07-05 08:15:28.174: debug: Check KSK status
|
||||
2010-07-05 08:15:28.174: warning: "example.net.": lifetime of key signing key 8406 exceeded since 4w5d12h49m48s
|
||||
2010-07-05 08:15:28.174: debug: Check ZSK status
|
||||
2010-07-05 08:15:28.174: debug: Lifetime(1209600 +/-150 sec) of active key 36257 exceeded (8081388 sec)
|
||||
2010-07-05 08:15:28.174: debug: ->waiting for published key
|
||||
2010-07-05 08:15:28.174: notice: "example.net.": lifetime of zone signing key 36257 exceeded since 11w2d12h49m48s: ZSK rollover deferred: waiting for published key
|
||||
2010-07-05 08:15:28.174: debug: Re-signing not necessary!
|
||||
2010-07-05 08:15:28.174: debug: Check if there is a parent file to copy
|
||||
2010-07-05 08:15:58.502: debug: Check RFC5011 status
|
||||
2010-07-05 08:15:58.502: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-07-05 08:15:58.503: debug: Check KSK status
|
||||
2010-07-05 08:15:58.503: warning: "example.net.": lifetime of key signing key 8406 exceeded since 4w5d12h50m18s
|
||||
2010-07-05 08:15:58.503: debug: Check ZSK status
|
||||
2010-07-05 08:15:58.503: debug: Lifetime(1209600 +/-150 sec) of active key 36257 exceeded (8081418 sec)
|
||||
2010-07-05 08:15:58.503: debug: ->waiting for published key
|
||||
2010-07-05 08:15:58.503: notice: "example.net.": lifetime of zone signing key 36257 exceeded since 11w2d12h50m18s: ZSK rollover deferred: waiting for published key
|
||||
2010-07-05 08:15:58.503: debug: Re-signing not necessary!
|
||||
2010-07-05 08:15:58.503: debug: Check if there is a parent file to copy
|
||||
2010-07-05 08:16:04.937: debug: Check RFC5011 status
|
||||
2010-07-05 08:16:04.937: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-07-05 08:16:04.937: debug: Check KSK status
|
||||
2010-07-05 08:16:04.937: warning: "example.net.": lifetime of key signing key 8406 exceeded since 4w5d12h50m24s
|
||||
2010-07-05 08:16:04.937: debug: Check ZSK status
|
||||
2010-07-05 08:16:04.937: debug: Lifetime(1209600 +/-150 sec) of active key 36257 exceeded (8081424 sec)
|
||||
2010-07-05 08:16:04.937: debug: ->waiting for published key
|
||||
2010-07-05 08:16:04.937: notice: "example.net.": lifetime of zone signing key 36257 exceeded since 11w2d12h50m24s: ZSK rollover deferred: waiting for published key
|
||||
2010-07-05 08:16:04.937: debug: Re-signing necessary: Option -f
|
||||
2010-07-05 08:16:04.937: notice: "example.net.": re-signing triggered: Option -f
|
||||
2010-07-05 08:16:04.937: debug: Writing key file "./example.net/dnskey.db"
|
||||
2010-07-05 08:16:04.937: debug: Incrementing serial number in file "./example.net/zone.db"
|
||||
2010-07-05 08:16:04.937: debug: Signing zone "example.net."
|
||||
2010-07-05 08:16:04.937: debug: Run cmd "cd ./example.net; /usr/local/sbin/dnssec-signzone -n 1 -u -A -3 C58544 -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-07-05 08:16:04.993: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-07-05 08:16:04.993: debug: Signing completed after 0s.
|
||||
2010-07-05 08:16:33.604: debug: Check RFC5011 status
|
||||
2010-07-05 08:16:33.604: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-07-05 08:16:33.604: debug: Check KSK status
|
||||
2010-07-05 08:16:33.604: warning: "example.net.": lifetime of key signing key 8406 exceeded since 4w5d12h50m53s
|
||||
2010-07-05 08:16:33.604: debug: Check ZSK status
|
||||
2010-07-05 08:16:33.604: debug: Lifetime(1209600 +/-150 sec) of active key 36257 exceeded (8081453 sec)
|
||||
2010-07-05 08:16:33.604: debug: ->waiting for published key
|
||||
2010-07-05 08:16:33.604: notice: "example.net.": lifetime of zone signing key 36257 exceeded since 11w2d12h50m53s: ZSK rollover deferred: waiting for published key
|
||||
2010-07-05 08:16:33.604: debug: Re-signing necessary: Option -f
|
||||
2010-07-05 08:16:33.604: notice: "example.net.": re-signing triggered: Option -f
|
||||
2010-07-05 08:16:33.604: debug: Writing key file "./example.net/dnskey.db"
|
||||
2010-07-05 08:16:33.605: debug: Incrementing serial number in file "./example.net/zone.db"
|
||||
2010-07-05 08:16:33.605: debug: Signing zone "example.net."
|
||||
2010-07-05 08:16:33.605: debug: Run cmd "cd ./example.net; /usr/local/sbin/dnssec-signzone -n 1 -u -A -3 FCB8E2 -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-07-05 08:16:33.648: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-07-05 08:16:33.648: debug: Signing completed after 0s.
|
||||
2010-07-30 01:30:55.411: debug: Check RFC5011 status
|
||||
2010-07-30 01:30:55.411: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-07-30 01:30:55.411: debug: Check KSK status
|
||||
2010-07-30 01:30:55.411: debug: Check ZSK status
|
||||
2010-07-30 01:30:55.411: debug: Lifetime(1209600 +/-150 sec) of active key 36257 exceeded (2130473 sec)
|
||||
2010-07-30 01:30:55.411: debug: ->depreciate it
|
||||
2010-07-30 01:30:55.411: debug: ->activate published key 48476
|
||||
2010-07-30 01:30:55.411: notice: "example.net.": lifetime of zone signing key 36257 exceeded: ZSK rollover done
|
||||
2010-07-30 01:30:55.411: debug: New key for publishing needed
|
||||
2010-07-30 01:30:55.493: debug: ->creating new key 1775
|
||||
2010-07-30 01:30:55.493: info: "example.net.": new key 1775 generated for publishing
|
||||
2010-07-30 01:30:55.493: debug: Re-signing necessary: Modfied zone key set
|
||||
2010-07-30 01:30:55.493: notice: "example.net.": re-signing triggered: Modfied zone key set
|
||||
2010-07-30 01:30:55.493: debug: Writing key file "./example.net/dnskey.db"
|
||||
2010-07-30 01:30:55.493: debug: Incrementing serial number in file "./example.net/zone.db"
|
||||
2010-07-30 01:30:55.493: debug: Signing zone "example.net."
|
||||
2010-07-30 01:30:55.494: debug: Run cmd "cd ./example.net; /usr/local/sbin/dnssec-signzone -n 1 -u -A -3 3723BA -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-07-30 01:30:55.563: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-07-30 01:30:55.563: debug: Signing completed after 0s.
|
||||
2010-08-26 22:52:09.539: debug: Check RFC5011 status
|
||||
2010-08-26 22:52:09.539: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-08-26 22:52:09.539: debug: Check KSK status
|
||||
2010-08-26 22:52:09.539: debug: Check ZSK status
|
||||
2010-08-26 22:52:09.539: debug: Lifetime(29100 sec) of depreciated key 36257 exceeded (2409674 sec)
|
||||
2010-08-26 22:52:09.539: info: "example.net.": old ZSK 36257 removed
|
||||
2010-08-26 22:52:09.572: debug: ->remove it
|
||||
2010-08-26 22:52:09.572: debug: Lifetime(1209600 +/-150 sec) of active key 48476 exceeded (2409674 sec)
|
||||
2010-08-26 22:52:09.572: debug: ->depreciate it
|
||||
2010-08-26 22:52:09.572: debug: ->activate published key 1775
|
||||
2010-08-26 22:52:09.572: notice: "example.net.": lifetime of zone signing key 48476 exceeded: ZSK rollover done
|
||||
2010-08-26 22:52:09.572: debug: New key for publishing needed
|
||||
2010-08-26 22:52:09.640: debug: ->creating new key 26477
|
||||
2010-08-26 22:52:09.640: info: "example.net.": new key 26477 generated for publishing
|
||||
2010-08-26 22:52:09.640: debug: Re-signing necessary: Modfied zone key set
|
||||
2010-08-26 22:52:09.640: notice: "example.net.": re-signing triggered: Modfied zone key set
|
||||
2010-08-26 22:52:09.640: debug: Writing key file "./example.net/dnskey.db"
|
||||
2010-08-26 22:52:09.641: debug: Incrementing serial number in file "./example.net/zone.db"
|
||||
2010-08-26 22:52:09.641: debug: Signing zone "example.net."
|
||||
2010-08-26 22:52:09.641: debug: Run cmd "cd ./example.net; /usr/local/sbin/dnssec-signzone -n 1 -u -A -3 2F41F9 -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-08-26 22:52:09.704: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-08-26 22:52:09.704: debug: Signing completed after 0s.
|
||||
2010-08-26 22:56:02.938: debug: Check RFC5011 status
|
||||
2010-08-26 22:56:02.938: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-08-26 22:56:02.938: debug: Check KSK status
|
||||
2010-08-26 22:56:02.938: debug: Check ZSK status
|
||||
2010-08-26 22:56:02.938: debug: Re-signing not necessary!
|
||||
2010-08-26 22:56:02.938: debug: Check if there is a parent file to copy
|
||||
2010-08-26 23:06:00.593: debug: Check RFC5011 status
|
||||
2010-08-26 23:06:00.593: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-08-26 23:06:00.593: debug: Check KSK status
|
||||
2010-08-26 23:06:00.593: debug: Check ZSK status
|
||||
2010-08-26 23:06:00.593: debug: New key for publishing needed
|
||||
2010-08-26 23:06:00.631: debug: ->creating new key 18026
|
||||
2010-08-26 23:06:00.631: info: "example.net.": new key 18026 generated for publishing
|
||||
2010-08-26 23:06:00.631: debug: Re-signing necessary: Modfied zone key set
|
||||
2010-08-26 23:06:00.631: notice: "example.net.": re-signing triggered: Modfied zone key set
|
||||
2010-08-26 23:06:00.631: debug: Writing key file "./example.net/dnskey.db"
|
||||
2010-08-26 23:06:00.631: debug: Incrementing serial number in file "./example.net/zone.db"
|
||||
2010-08-26 23:06:00.631: debug: Signing zone "example.net."
|
||||
2010-08-26 23:06:00.631: debug: Run cmd "cd ./example.net; /usr/local/sbin/dnssec-signzone -n 1 -u -A -3 5EA89E -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-08-26 23:06:00.672: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-08-26 23:06:00.672: debug: Signing completed after 0s.
|
||||
2010-08-26 23:11:33.808: debug: Check RFC5011 status
|
||||
2010-08-26 23:11:33.808: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-08-26 23:11:33.809: debug: Check KSK status
|
||||
2010-08-26 23:11:33.809: debug: Check ZSK status
|
||||
2010-08-26 23:11:33.809: debug: Re-signing not necessary!
|
||||
2010-08-26 23:11:33.809: debug: Check if there is a parent file to copy
|
||||
2010-08-26 23:12:51.012: debug: Check RFC5011 status
|
||||
2010-08-26 23:12:51.012: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-08-26 23:12:51.012: debug: Check KSK status
|
||||
2010-08-26 23:12:51.012: debug: Check ZSK status
|
||||
2010-08-26 23:12:51.012: debug: Re-signing not necessary!
|
||||
2010-08-26 23:12:51.012: debug: Check if there is a parent file to copy
|
||||
2010-08-26 23:23:47.886: debug: Check RFC5011 status
|
||||
2010-08-26 23:23:47.886: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-08-26 23:23:47.886: debug: Check KSK status
|
||||
2010-08-26 23:23:47.886: debug: Check ZSK status
|
||||
2010-08-26 23:23:47.886: debug: Re-signing not necessary!
|
||||
2010-08-26 23:23:47.886: debug: Check if there is a parent file to copy
|
||||
2010-08-26 23:50:15.724: debug: Check RFC5011 status
|
||||
2010-08-26 23:50:15.724: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-08-26 23:50:15.724: debug: Check KSK status
|
||||
2010-08-26 23:50:15.724: debug: Check ZSK status
|
||||
2010-08-26 23:50:15.725: debug: Re-signing not necessary!
|
||||
2010-08-26 23:50:15.725: debug: Check if there is a parent file to copy
|
||||
2010-08-26 23:50:55.124: debug: Check RFC5011 status
|
||||
2010-08-26 23:50:55.124: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-08-26 23:50:55.124: debug: Check KSK status
|
||||
2010-08-26 23:50:55.124: debug: Check ZSK status
|
||||
2010-08-26 23:50:55.124: debug: Re-signing not necessary!
|
||||
2010-08-26 23:50:55.124: debug: Check if there is a parent file to copy
|
||||
2010-08-26 23:51:46.719: debug: Check RFC5011 status
|
||||
2010-08-26 23:51:46.719: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-08-26 23:51:46.719: debug: Check KSK status
|
||||
2010-08-26 23:51:46.719: debug: Check ZSK status
|
||||
2010-08-26 23:51:46.719: debug: Re-signing not necessary!
|
||||
2010-08-26 23:51:46.719: debug: Check if there is a parent file to copy
|
||||
2010-08-26 23:54:22.824: debug: Check RFC5011 status
|
||||
2010-08-26 23:54:22.824: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-08-26 23:54:22.824: debug: Check KSK status
|
||||
2010-08-26 23:54:22.824: debug: Check ZSK status
|
||||
2010-08-26 23:54:22.824: debug: Re-signing not necessary!
|
||||
2010-08-26 23:54:22.825: debug: Check if there is a parent file to copy
|
||||
2010-08-26 23:55:00.018: debug: Check RFC5011 status
|
||||
2010-08-26 23:55:00.018: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-08-26 23:55:00.018: debug: Check KSK status
|
||||
2010-08-26 23:55:00.018: debug: Check ZSK status
|
||||
2010-08-26 23:55:00.018: debug: New key for pre-publishing needed
|
||||
2010-08-26 23:55:00.110: debug: ->creating new key 18293
|
||||
2010-08-26 23:55:00.110: info: "example.net.": new key 18293 generated for pre-publishing
|
||||
2010-08-26 23:55:00.110: debug: Re-signing necessary: Modfied zone key set
|
||||
2010-08-26 23:55:00.110: notice: "example.net.": re-signing triggered: Modfied zone key set
|
||||
2010-08-26 23:55:00.110: debug: Writing key file "./example.net/dnskey.db"
|
||||
2010-08-26 23:55:00.110: debug: Incrementing serial number in file "./example.net/zone.db"
|
||||
2010-08-26 23:55:00.110: debug: Signing zone "example.net."
|
||||
2010-08-26 23:55:00.111: debug: Run cmd "cd ./example.net; /usr/local/sbin/dnssec-signzone -n 1 -u -A -3 EBE919 -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-08-26 23:55:00.168: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-08-26 23:55:00.169: debug: Signing completed after 0s.
|
||||
2010-08-26 23:56:17.466: debug: Check RFC5011 status
|
||||
2010-08-26 23:56:17.466: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-08-26 23:56:17.466: debug: Check KSK status
|
||||
2010-08-26 23:56:17.466: debug: Check ZSK status
|
||||
2010-08-26 23:56:17.466: debug: Re-signing necessary: Modfied zone key set
|
||||
2010-08-26 23:56:17.466: notice: "example.net.": re-signing triggered: Modfied zone key set
|
||||
2010-08-26 23:56:17.466: debug: Writing key file "./example.net/dnskey.db"
|
||||
2010-08-26 23:56:17.467: debug: Incrementing serial number in file "./example.net/zone.db"
|
||||
2010-08-26 23:56:17.467: debug: Signing zone "example.net."
|
||||
2010-08-26 23:56:17.467: debug: Run cmd "cd ./example.net; /usr/local/sbin/dnssec-signzone -n 1 -u -A -3 A876E5 -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-08-26 23:56:17.531: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-08-26 23:56:17.531: debug: Signing completed after 0s.
|
||||
2010-08-26 23:57:00.178: debug: Check RFC5011 status
|
||||
2010-08-26 23:57:00.178: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-08-26 23:57:00.178: debug: Check KSK status
|
||||
2010-08-26 23:57:00.178: debug: Check ZSK status
|
||||
2010-08-26 23:57:00.178: debug: Re-signing not necessary!
|
||||
2010-08-26 23:57:00.178: debug: Check if there is a parent file to copy
|
||||
2010-10-21 14:01:35.546: debug: Check RFC5011 status
|
||||
2010-10-21 14:01:35.546: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-10-21 14:01:35.546: debug: Check KSK status
|
||||
2010-10-21 14:01:35.546: debug: Check ZSK status
|
||||
2010-10-21 14:01:35.546: debug: Re-signing necessary: re-signing interval (2d) reached
|
||||
2010-10-21 14:01:35.546: notice: "example.net.": re-signing triggered: re-signing interval (2d) reached
|
||||
2010-10-21 14:01:35.546: debug: Writing key file "./example.net/dnskey.db"
|
||||
2010-10-21 14:01:35.607: debug: Incrementing serial number in file "./example.net/zone.db"
|
||||
2010-10-21 14:01:35.607: debug: Signing zone "example.net."
|
||||
2010-10-21 14:01:35.607: debug: Run cmd "cd ./example.net; /usr/local/sbin/dnssec-signzone -n 1 -u -A -3 9FC981 -C -g -p -d ../keysets -o example.net. -e +518400 zone.db K*.private 2>&1"
|
||||
2010-10-21 14:01:35.761: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-10-21 14:01:35.761: debug: Signing completed after 0s.
|
||||
2010-10-21 14:02:09.209: debug: Check RFC5011 status
|
||||
2010-10-21 14:02:09.209: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-10-21 14:02:09.209: debug: Check KSK status
|
||||
2010-10-21 14:02:09.209: debug: Check ZSK status
|
||||
2010-10-21 14:02:09.209: debug: Re-signing not necessary!
|
||||
2010-10-21 14:02:09.209: debug: Check if there is a parent file to copy
|
||||
2010-10-21 14:05:36.170: debug: Check RFC5011 status
|
||||
2010-10-21 14:05:36.170: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-10-21 14:05:36.170: debug: Check KSK status
|
||||
2010-10-21 14:05:36.170: debug: Check ZSK status
|
||||
2010-10-21 14:05:36.170: debug: Re-signing not necessary!
|
||||
2010-10-21 14:05:36.170: debug: Check if there is a parent file to copy
|
||||
2010-10-21 14:30:43.892: debug: Check RFC5011 status
|
||||
2010-10-21 14:30:43.892: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-10-21 14:30:43.892: debug: Check KSK status
|
||||
2010-10-21 14:30:43.892: debug: Check ZSK status
|
||||
2010-10-21 14:30:43.892: debug: Re-signing not necessary!
|
||||
2010-10-21 14:30:43.892: debug: Check if there is a parent file to copy
|
||||
|
|
@ -1,169 +0,0 @@
|
|||
; File written on Thu Oct 21 14:01:35 2010
|
||||
; dnssec_signzone version 9.7.2-P2
|
||||
example.net. 7200 IN SOA ns1.example.net. hostmaster.example.net. (
|
||||
384 ; serial
|
||||
43200 ; refresh (12 hours)
|
||||
1800 ; retry (30 minutes)
|
||||
1209600 ; expire (2 weeks)
|
||||
7200 ; minimum (2 hours)
|
||||
)
|
||||
7200 RRSIG SOA 8 2 7200 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
f+HC41CGvNmlXSvPzzMbtVreNYKWyBhvbeb+
|
||||
NUSvbBfuSlVt6VbyPUBYSe5Vg1QJO3YKu0ZR
|
||||
Pw5Y9TNCaWqZCA== )
|
||||
7200 NS ns1.example.net.
|
||||
7200 NS ns2.example.net.
|
||||
7200 RRSIG NS 8 2 7200 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
aQpW5SQJ8Yx7++QWtRWMDoV+3OPjgTRC0PQC
|
||||
zns3MTbpk2wIlhE7hqty+b+1EktEoMzmx73u
|
||||
5Fu0OPKO+2PS5w== )
|
||||
3600 DNSKEY 256 3 8 (
|
||||
BQEAAAAB2IOedrEUxH0Mxn3f24ZP9b5r+SHc
|
||||
FyFZ2vXNIqmuILVO40MrW+R4H0UsQURAfKTF
|
||||
Zeka2EsC7CEIyuEgkloDBQ==
|
||||
) ; key id = 56360
|
||||
3600 DNSKEY 257 3 8 (
|
||||
BQEAAAABC6qZRCQRp2qnmxvWal1kergOJ1xQ
|
||||
5wGD+HZFLEvsvD8sU0i1BGJoeDK5N/07S7s0
|
||||
aYVdIViQ1/CmpqBgahnlOKAoMO3eYnTuFRE7
|
||||
HqJK1CSN2+nvN1m+miz+vfSPSOLeP2u8GAwI
|
||||
Jmq/gb78AWStvW6HAXrDfaiqvqb4MDZCvpla
|
||||
chhyHfngVLFYI22tyivUmzN/pRBePYGQ1nVs
|
||||
K1cPYDPp4Q==
|
||||
) ; key id = 52101
|
||||
3600 RRSIG DNSKEY 8 2 3600 20101027110135 (
|
||||
20101021110135 52101 example.net.
|
||||
BlWP6PoxZFRZoLav7/+yPEgNIss17oxEJZtB
|
||||
rVSiVb0BfwhL96KJ1uIOhK9r1+Tj8w3Ed7Oi
|
||||
pocSTkZueV3OxFkBgSQAgc1JeUQTOVKYe80L
|
||||
UFjl7UzV0eITIV1DE/QqWTBBblxjXF3Egy6O
|
||||
6/9IrD65LWOGnLFFOSUZQ9IU8jFX/zqq5FWQ
|
||||
Sta2/tQkzhq5F42qw3dRBNsoUC1bQ38UsYSk
|
||||
SQ== )
|
||||
3600 RRSIG DNSKEY 8 2 3600 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
VXJh+xZt8/5Eeo8oQyI89nXGJ0bWeBN25kpw
|
||||
asam+qpoKsH6g8qJRyL3mEwIFOaud2mlQx9y
|
||||
cdv42Vf3kfY71w== )
|
||||
0 NSEC3PARAM 1 0 10 9FC981
|
||||
0 RRSIG NSEC3PARAM 8 2 0 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
Fr4DrVORiEYUVCBmlRzjcEaKQ2VymMiMeJfd
|
||||
gSWJzTzXbcuBbXDCfBRdph96Nz1xFvdOWvFn
|
||||
xXxVOXW996AfEw== )
|
||||
a.example.net. 7200 IN A 1.2.3.1
|
||||
7200 RRSIG A 8 3 7200 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
ZAuaFsvYdV1i4EqIgQoSzpkhMFJpJOOPIG9h
|
||||
RXTT+LAUSFjOrFx2ovSgnySSiUV/LOsIV7bj
|
||||
08ZkIzSPYKi4Ow== )
|
||||
b.example.net. 7200 IN MX 10 a.example.net.
|
||||
7200 RRSIG MX 8 3 7200 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
SEIMAVtIT/2TGxkS2NFMRQfrUROKO1pbxYcS
|
||||
FHImCGhWILb1E7qQ0saLi9QTMftCwRmYtJ4w
|
||||
aDwAukjuLXOAnA== )
|
||||
d.example.net. 7200 IN A 1.2.3.3
|
||||
7200 RRSIG A 8 3 7200 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
1URwzkjdIhBCBtBWV9aUhJQ3yFwqwgscvcVN
|
||||
9dvNqH5g7xLz+maqdeva065z0AkO5Et/9809
|
||||
tm/0X2g0wQcoMQ== )
|
||||
7200 AAAA 2001:db8::3
|
||||
7200 RRSIG AAAA 8 3 7200 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
fIUOcVYR9Ut+iWzE+R3N01bzLJ0gpSI1E0y0
|
||||
cqEGpaU8mbgwnm4tAh57GKs8XZBbLEOH2zO8
|
||||
5WTEjWHpKjqx3Q== )
|
||||
localhost.example.net. 7200 IN A 127.0.0.1
|
||||
7200 RRSIG A 8 3 7200 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
iIfD1pCP+uHs1RarezGlZZhoyQ6R+3K3s6ba
|
||||
xZZ5JCremDhFYPeMinRMjZSPos2QyEM1aHI8
|
||||
2gXlxcb/y4+XRA== )
|
||||
ns1.example.net. 7200 IN A 1.0.0.5
|
||||
7200 RRSIG A 8 3 7200 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
xBwgaFNo7+s4n4KnyZPR+1CESNVvXwUZHroC
|
||||
dkEcLo8EF7+rbzFdDooJvD8wzlpy2nhwjLOL
|
||||
ZxIfgZfNgkVXBw== )
|
||||
7200 AAAA 2001:db8::53
|
||||
7200 RRSIG AAAA 8 3 7200 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
uSuzZH2J+pwcP1PKKgrdJrwyvh1kpWBsprgd
|
||||
9h59q9HYKR56LPx/3iuW7oCAO5fBFTp9pvcK
|
||||
BI6f+4cs1Qpp6g== )
|
||||
ns2.example.net. 7200 IN A 1.2.0.6
|
||||
7200 RRSIG A 8 3 7200 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
N+U/A0VJU9HWwk1j0CJtUN7Nw9g0A3oNeKP1
|
||||
7YJ1p0H6QvgRHDe9w8oX3iCg+IEBS9oLdTer
|
||||
DXsbWVlZNXjTSw== )
|
||||
sub.example.net. 7200 IN NS ns1.example.net.
|
||||
7200 DS 855 7 1 (
|
||||
338E1808511D3E533F1C6B1DF27E0AABA8CC
|
||||
6FE8 )
|
||||
7200 DS 855 7 2 (
|
||||
C07C1F2004ED12D40EEC82E4358BD8D2EDC1
|
||||
99C8E6126DD293A8E402E591C98A )
|
||||
7200 DS 33176 10 1 (
|
||||
B7D045F9D7176BD0D00AF389856D18C0E361
|
||||
C443 )
|
||||
7200 DS 33176 10 2 (
|
||||
627102FACA12A10C88F6C67915B720CC6888
|
||||
7CF1C10BC3E8EB864160F1965A18 )
|
||||
7200 RRSIG DS 8 3 7200 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
N8A1y3qpsaJ0lP6d2I1y8YEuda7c2GY1kuCt
|
||||
9Mdao6oh7tL6XP2b/ELIBo6fsghfuW1KZfou
|
||||
WkTbI4/HV5732g== )
|
||||
0SFBC13DNQA2CKBS24U09GPJMGD5QCF2.example.net. 7200 IN NSEC3 1 1 10 9FC981 16DIB0QP1341N7TSMI2MGCQ2MDNP6TFO NS SOA RRSIG DNSKEY NSEC3PARAM
|
||||
7200 RRSIG NSEC3 8 3 7200 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
irEoMAQ1uehoU51rEkuM20++pBX8iPrFzQZk
|
||||
4VAe0AXbeMBphSh3oBB0I3p7w4UGXLuYR7MW
|
||||
bDPNteuoui5QmQ== )
|
||||
16DIB0QP1341N7TSMI2MGCQ2MDNP6TFO.example.net. 7200 IN NSEC3 1 1 10 9FC981 222FFA4JCL3KC4NLGH9R685ISJKB205Q MX RRSIG
|
||||
7200 RRSIG NSEC3 8 3 7200 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
1rCPDG0uz8PbKQ98WLlu1R39HhKOrfjory5r
|
||||
tTi/e3RA2IAksL8ZQaVW+EyRzLGSDM7TtciM
|
||||
UEgK/utbE0WlqQ== )
|
||||
222FFA4JCL3KC4NLGH9R685ISJKB205Q.example.net. 7200 IN NSEC3 1 1 10 9FC981 AMEE10EPLHBGI9Q6ICVFSNVP2U0D0TVB A RRSIG
|
||||
7200 RRSIG NSEC3 8 3 7200 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
1jS0RwIW59DFCr2d+ghFW8yFdcaGJDCQFgVh
|
||||
pNiTIijvvyiObt7EqfJJ5PPV8CqJsZEiIoh+
|
||||
JRDEuSSrKCU6eA== )
|
||||
AMEE10EPLHBGI9Q6ICVFSNVP2U0D0TVB.example.net. 7200 IN NSEC3 1 1 10 9FC981 BOS6983BFUCMFRIQF1QMC1U4AU37TR6O A AAAA RRSIG
|
||||
7200 RRSIG NSEC3 8 3 7200 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
OHYj80ju8hKFNSDNj//yDIXgTKM2NUyRO2cs
|
||||
K1knzM/3L/GvmEm5nvHNepxj+surAl6mmaiT
|
||||
k2wl4DOdTml60w== )
|
||||
BOS6983BFUCMFRIQF1QMC1U4AU37TR6O.example.net. 7200 IN NSEC3 1 1 10 9FC981 D8S4S8KU5O1TCASTGO9FEHHGUGO696U4 A AAAA RRSIG
|
||||
7200 RRSIG NSEC3 8 3 7200 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
HwT0gQ7fVc5TYTc/SDQw9zMPmlSwlEW3cmVk
|
||||
mjIQANQPFi597frcuVt26xAoUB71TXgGp+62
|
||||
3y2MyRs66kCrNg== )
|
||||
D8S4S8KU5O1TCASTGO9FEHHGUGO696U4.example.net. 7200 IN NSEC3 1 1 10 9FC981 DBLIJ0LAN19DVGU1E46BJ9R9SN5BRETC NS DS RRSIG
|
||||
7200 RRSIG NSEC3 8 3 7200 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
R/YtEmQgd+tHTNQ8itKrFhy880QLYTpAVaER
|
||||
0dd9vITUKHG7Fhr67ACkWBOEec+d9kiL76cH
|
||||
DHrDGZ+wKksLxg== )
|
||||
DBLIJ0LAN19DVGU1E46BJ9R9SN5BRETC.example.net. 7200 IN NSEC3 1 1 10 9FC981 H108GFD5147KMF1CLFQLQQBNSD733MPQ A RRSIG
|
||||
7200 RRSIG NSEC3 8 3 7200 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
KTPX36NTHepXsZoUGwBTq6Qt86mSF4Z0hlaP
|
||||
HbhF9A+BJwLx+Sg0ifX0qobfMwh+BZZQZ8E3
|
||||
nSSyA5sIJWL39Q== )
|
||||
H108GFD5147KMF1CLFQLQQBNSD733MPQ.example.net. 7200 IN NSEC3 1 1 10 9FC981 0SFBC13DNQA2CKBS24U09GPJMGD5QCF2 A RRSIG
|
||||
7200 RRSIG NSEC3 8 3 7200 20101027110135 (
|
||||
20101021110135 56360 example.net.
|
||||
dmGULq6gwCxRscDm0oCeFD6RnDkXWtaw85DO
|
||||
UGwgczRooNDBkbD608EJgqDT+ds0IGwZazGq
|
||||
ufB2hCiFNnNjyg== )
|
||||
|
|
@ -1,2 +0,0 @@
|
|||
dyn.example.net. IN DS 52935 7 1 C8B16DDC8AFC66AFAB2E9BB5DD6D047A393870A9
|
||||
dyn.example.net. IN DS 52935 7 2 56D089B139FEB68FB9D09038920E51DF067C4FCFE62D6C67C61395BC 24E7D425
|
||||
|
|
@ -1,2 +0,0 @@
|
|||
example.net. IN DS 52101 8 1 F362C7CD57C0D663B783B763564C00C40A85AA69
|
||||
example.net. IN DS 52101 8 2 0F94D302E97BBAFD0495E7C13B2428E8597084604053183DE9C8C4C3 EF2FAED1
|
||||
|
|
@ -1,4 +0,0 @@
|
|||
sub.example.net. IN DS 855 7 1 338E1808511D3E533F1C6B1DF27E0AABA8CC6FE8
|
||||
sub.example.net. IN DS 855 7 2 C07C1F2004ED12D40EEC82E4358BD8D2EDC199C8E6126DD293A8E402 E591C98A
|
||||
sub.example.net. IN DS 33176 10 1 B7D045F9D7176BD0D00AF389856D18C0E361C443
|
||||
sub.example.net. IN DS 33176 10 2 627102FACA12A10C88F6C67915B720CC68887CF1C10BC3E8EB864160 F1965A18
|
||||
|
|
@ -1,8 +0,0 @@
|
|||
$ORIGIN .
|
||||
dyn.example.net 7200 IN DNSKEY 257 3 7 (
|
||||
AwEAAeqEDYgA5lns1VsMJiZfTWMEguameVmO
|
||||
oBYx8s1uLzmS/3APsh1eWCeoBgAjRry1tpM/
|
||||
bPowyuygE4H0LpzNQLm9RbjDmpDN8Gwi3AjE
|
||||
nG4HCT58TuAVxjiefN+vb1pvyFlAL58YOkuG
|
||||
f9tG/NJMNc+XrULAU1ey2dT9Fh+SCVO3
|
||||
) ; key id = 52935
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
$ORIGIN .
|
||||
example.net 7200 IN DNSKEY 257 3 8 (
|
||||
BQEAAAABC6qZRCQRp2qnmxvWal1kergOJ1xQ
|
||||
5wGD+HZFLEvsvD8sU0i1BGJoeDK5N/07S7s0
|
||||
aYVdIViQ1/CmpqBgahnlOKAoMO3eYnTuFRE7
|
||||
HqJK1CSN2+nvN1m+miz+vfSPSOLeP2u8GAwI
|
||||
Jmq/gb78AWStvW6HAXrDfaiqvqb4MDZCvpla
|
||||
chhyHfngVLFYI22tyivUmzN/pRBePYGQ1nVs
|
||||
K1cPYDPp4Q==
|
||||
) ; key id = 52101
|
||||
|
|
@ -1,15 +0,0 @@
|
|||
$ORIGIN .
|
||||
sub.example.net 7200 IN DNSKEY 257 3 7 (
|
||||
AwEAAcN4oi+shB1ZNhIXtSBuhAJKDp95Bc4H
|
||||
3MyhMxUos7VWVrsAxNK8u900fdubtofcoLR4
|
||||
FAoaPpX7LhQ1OPh+9RR4VIYrwilGkf2ZtZh0
|
||||
URwOruYqvJAIf6ZTxyakaUaY5m0ABl1learg
|
||||
+XhjBHcMz3Lvx4Opnw5qsM+vnqJT15vd
|
||||
) ; key id = 855
|
||||
7200 IN DNSKEY 257 3 10 (
|
||||
BQEAAAABug/pvRR/mv4qDN3gWFRiir/6UNpn
|
||||
uBuVC4z7xeaNk/KdvcdDibLrSZaGfcq7no3c
|
||||
PvRsJ/U7S6VvYXFZNaXvqJ66ZGcCtImIoaCZ
|
||||
IQboz3hFelJb/62KqZWcj1anv7+LmfYpuA1U
|
||||
JCWpFriWYhzuT3q98lG/c7XqiX79Ytoy6P0=
|
||||
) ; key id = 33176
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20110125091121
|
||||
;% lifetime=365d
|
||||
sub.example.net. IN DNSKEY 257 3 5 BQEAAAABCwsLhN2Fe4nAorCoXf8CU2c4QqxPyNDVOoGrOSw/u883bF0w hFeEDwQjnHD5xMwNvMk8gNJnxv2kp6lgUcx7CgC08VQD2ko9e4zLSvoR WqFZ57LXKDpKdNLuVHDA6RObDX1PG0wjeWTa2lXshlhGgnGnrQhnCjYl nnCCxgKdxwvRdLRpnqnpGCHRtj9THHOlkJuAC6bor4qlNlODIcDFBsFf +Q==
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 5 (RSASHA1)
|
||||
Modulus: CwsLhN2Fe4nAorCoXf8CU2c4QqxPyNDVOoGrOSw/u883bF0whFeEDwQjnHD5xMwNvMk8gNJnxv2kp6lgUcx7CgC08VQD2ko9e4zLSvoRWqFZ57LXKDpKdNLuVHDA6RObDX1PG0wjeWTa2lXshlhGgnGnrQhnCjYlnnCCxgKdxwvRdLRpnqnpGCHRtj9THHOlkJuAC6bor4qlNlODIcDFBsFf+Q==
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: BEip8I3ZrAekBP8C78C/uCkGVPhLKRUmRzrtHIw+v1winCPwresHjn3RYzkG1ZRe+976t472XQK7hTqUjCRz6sHdboDr9JB3XX3szZc8oIRN+mE4ubolYA6KsKsXNPFZCR/njFe9q6pgW83o9KFls3zmERI2Au4dgahvMBurAQd0ALgnDeWQ9D6sHduUVsE9y8QNj2ePxwMoqaa7z2YLNjNHgQ==
|
||||
Prime1: A5oDBCAqjh1f1jvQp1QSlnnwcU8TkS3bZHvWsD2Mb8IDpUvEHgPtLk8B1mxOQ37X9r7Acv8qLaQghBNSKE/eQtI9xboJhzqAEXlGn3FMPHMJSQ==
|
||||
Prime2: AxDwhsYfyz+524Ox+PF4S1RvKidLrFg+W+xvSxmX5hoFPtUVM6Rg5o1Gszb41YrRhOUOTu0EUg3s68F/H90Y8Z3upU5joDfDYt5irPEaIOjRMQ==
|
||||
Exponent1: Af2chU+hAR/vDAfC+sRSYF/b6A8OgpV66oTymQ3vd9Epy0HtSPo6Pbp7ocI9NC0gXX8RpshsWuGY0Vp9Q1iNg/k0GcxNlmBhVbEICfUovKikQQ==
|
||||
Exponent2: AeaYvLF2gEOPhE2A6SVd/wavTtozTK7MHUvGzxhUrzcQpr6Q9J+jt1KuQFy12SXtEx5Ksmb9X8HM8wSYp4LWoWDUT3dr6vm81TXk282DtDMPsQ==
|
||||
Coefficient: Af+eH8CX1yPFLO/zkmGfl6O0jbTlaMLyCpVat/gcnuP99Njpir9T66c0AUYplmAU39gRp/Fes5v4Zg0k3oqMKDETqIDUAzLAw/jPtG4lleP93Q==
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20110125091121
|
||||
;% lifetime=84d
|
||||
sub.example.net. IN DNSKEY 256 3 5 BQEAAAABn6df/D+TwBypmBlabmitCSWnYLJFa/8Kk3W7Zj+ODS/kJA6s QZIQiLUK0sd/dM+A8+qAVlgwgQDxkAiuwrc7Lw==
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 5 (RSASHA1)
|
||||
Modulus: n6df/D+TwBypmBlabmitCSWnYLJFa/8Kk3W7Zj+ODS/kJA6sQZIQiLUK0sd/dM+A8+qAVlgwgQDxkAiuwrc7Lw==
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: PG5iufxb7TEulI2ByOZ0XgY2PTGWg0S7yN4ac+sXC290afYP5ZHDaq95YVQk99951eB9qshc1kSZ/NBD+fNa+Q==
|
||||
Prime1: zDTjPGm+Np3hO4B5bz3KJgFqi1KwsU7ZQ+lj+M91G9s=
|
||||
Prime2: yCWuBVdxUKUebhrEcaLc7SRVXXxqtlzBOIF+o/oOSD0=
|
||||
Exponent1: yEjJnrWAGD79aaNqjzo2vCM3Cnfl7KxZxIXSdRisHXc=
|
||||
Exponent2: gJhrWsLDkyZq42RRAt7Krhvc0CUF0w50uzn6X8yqjLE=
|
||||
Coefficient: LgMQFUiUSrbRtwKnzWmOo94ssIVB91TQIVQSVuuqvHQ=
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20100924112625
|
||||
;% lifetime=7d
|
||||
sub.example.net. IN DNSKEY 257 3 7 AwEAAcN4oi+shB1ZNhIXtSBuhAJKDp95Bc4H3MyhMxUos7VWVrsAxNK8 u900fdubtofcoLR4FAoaPpX7LhQ1OPh+9RR4VIYrwilGkf2ZtZh0URwO ruYqvJAIf6ZTxyakaUaY5m0ABl1learg+XhjBHcMz3Lvx4Opnw5qsM+v nqJT15vd
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 7 (NSEC3RSASHA1)
|
||||
Modulus: w3iiL6yEHVk2Ehe1IG6EAkoOn3kFzgfczKEzFSiztVZWuwDE0ry73TR925u2h9ygtHgUCho+lfsuFDU4+H71FHhUhivCKUaR/Zm1mHRRHA6u5iq8kAh/plPHJqRpRpjmbQAGXWV5quD5eGMEdwzPcu/Hg6mfDmqwz6+eolPXm90=
|
||||
PublicExponent: AQAB
|
||||
PrivateExponent: fNWHzqaAYTXeIEPfuuyZhdTB7fqeSGwhCNZSB0tNKZwQG7FsAaHi4GxrjFqvgajXQSoGskT8f1BAp0suLRT3cpKH/FXeYknuwGMETTKk+4zZ7LAcSqU6b/dQptYdBJK1IdwMJjEAf5XT5y3OpPUbcm+o/9KxuepPsxXpQnu8rUk=
|
||||
Prime1: 8xZNFTO8y0gbq93Qo9Hg0BVxrR9byVBVg++p/7n5Qvr+bftE7FQ0OGbRCYksSf00jPbVBdzfn1IxlQL7Gipomw==
|
||||
Prime2: zdrP9WaH7jYWbBuTEnsPDDcE1wHBNer2bHtGCvD6FFpCahP8zq//p2OvYEvljxXe2gqbzYASaeMd7c8EZeEo5w==
|
||||
Exponent1: HjMxFGc/F0o4FdwS5adXdMKVQtrYfmQ6m4+U4S5rp0Sjg2pqH6o+aptrcPHXzMFmW/T2dioApjyB6G9cXt3R7Q==
|
||||
Exponent2: ftqygGVYqsEF/ETZ0u+mjD5zaxOXvuQ2Sw+EUEXDtjsQ5lG+3peykbJqZosewZgWpoMXFAIyVrIwxVVnPmkMTQ==
|
||||
Coefficient: GZcwPOtNNbsqM2Qw1oS9m4/rPwYp6iwDcSSnypmn1jliaDMZOEiHqEUZ223khlhJxlW21kQAtZGgL2kX1LETaQ==
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20100924112625
|
||||
;% lifetime=3d
|
||||
sub.example.net. IN DNSKEY 256 3 7 AwEAAa5bMLD0fx/ZGgiuhgslScPhm3c3sbLKn5Kc9w63+VBcq5Bg9td+ pME6uVtNvvAsgjoE2ORcqULqPp6ITd7VpTE=
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 7 (NSEC3RSASHA1)
|
||||
Modulus: rlswsPR/H9kaCK6GCyVJw+Gbdzexssqfkpz3Drf5UFyrkGD2136kwTq5W02+8CyCOgTY5FypQuo+nohN3tWlMQ==
|
||||
PublicExponent: AQAB
|
||||
PrivateExponent: p+LU2r9CnWcOA2gRWDAafEwDx+LP74nd523PEtQhc7eA9YL1d0w5DsxNUbGp1a2fuYCO/V1jew7E/PQkBOEHQQ==
|
||||
Prime1: 1S2btDM6sqSVM66/V5x8T3d6tqLxZz/+0hP2064u68k=
|
||||
Prime2: 0WE3l1yD6SzCKYaCHRdmOvMvzwcoooHOFu7nIqIv0ik=
|
||||
Exponent1: SoSn4gTqZtoLYcabEkgcWDb+yWsKEbqYG91osbQ4qKk=
|
||||
Exponent2: QHZO2DHqhtJ54LEBxBUdK08NzA5nK0kNezAIRzhpwqk=
|
||||
Coefficient: c6ICoCH4ZQeCVuEn5HwBof93cBjc0A4s5AIOw3YhmYE=
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20101127101703
|
||||
;% lifetime=7d
|
||||
sub.example.net. IN DNSKEY 257 3 7 AwEAAbv0XLM9qAEncwc4HjBamccNu/z+gPmnsp4bFEdz6YgPtSSIdUA+ OChIBJg2fADBupHsmibB5E6IVHcuKO0OF4uiSv4FSk9p/2mioI9RxeSR xGQ6gds3DJBN8sw86LH8BjLynqY/Jw/D3BudvcDHJtz7HtCH0mNEL9eG hjzq+GW/
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 7 (NSEC3RSASHA1)
|
||||
Modulus: u/Rcsz2oASdzBzgeMFqZxw27/P6A+aeynhsUR3PpiA+1JIh1QD44KEgEmDZ8AMG6keyaJsHkTohUdy4o7Q4Xi6JK/gVKT2n/aaKgj1HF5JHEZDqB2zcMkE3yzDzosfwGMvKepj8nD8PcG529wMcm3Pse0IfSY0Qv14aGPOr4Zb8=
|
||||
PublicExponent: AQAB
|
||||
PrivateExponent: I3QCkGTO7fjM/82cFC7i1uNGVICFP5JcZOpitt+sa1fbKVr8EvQpj5+WDkgot9PTJ3dj1G+6av3YQOraGW0RD5hVfuuJD3B10e7wVuaYRwA1uF/Lj0UTjag5d1KV0L38Zj73jEhA50ZAqDKNykwV3Ir4mVlIH0t4AINYrL84vCE=
|
||||
Prime1: +H9jAgtRG+/Co4e+ef8JKkiwFlM3deV1PUa8EjvnLuY5g3de+RARJQ5stDdHPik4xaau3sQB/5atI4zxDTqBNw==
|
||||
Prime2: waELRgLV2acQzUQu1zbGWqucgItEmx1bg9SJhKatJpAA0dBGvU42rOMA+eKm47uRY2CZkNaJneiQFFbbIW2juQ==
|
||||
Exponent1: j3Sq6aEy39fYG6Pf2HndBqYT0a+U0uD2f7t4E2a1naOXDEg7cblOzH+5TYij/kS525DQXxX0uWJ47Y8OEb72nQ==
|
||||
Exponent2: iBfYI6I0iqF5Fr04qv2N1wbNni/Ezb2JqBQHgBvikbsfSFk6jy3dEhEPi5M5t9EK9C1eYkXYPgvK0PDnXgyAyQ==
|
||||
Coefficient: oZYj4nmY+QE6/sOjBelpaEm7BgGasIIZqQN2D3DBpiVUmQDtJ6XTcpcdZ14IVsTIijvS7mXM+hzbCH/UG/pL0Q==
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20101127101703
|
||||
;% lifetime=3d
|
||||
sub.example.net. IN DNSKEY 256 3 7 AwEAAcbKVFdrzJmGoQCMYf9vwxdKrGrLk86OqVHVlXAwoHgdGpAjsga0 FenJ7FwC4eqAxK0dUC86/dUX/YUFz0fBLo0=
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 7 (NSEC3RSASHA1)
|
||||
Modulus: xspUV2vMmYahAIxh/2/DF0qsasuTzo6pUdWVcDCgeB0akCOyBrQV6cnsXALh6oDErR1QLzr91Rf9hQXPR8EujQ==
|
||||
PublicExponent: AQAB
|
||||
PrivateExponent: nuTaxYXE5HJX/rg3HJWYuuVVK4fNfS1K6b5u1F4J5fbzBR+NZnWpRWMG3qQ9rlMp1jZOKCKfmJPjrYpahjbQAQ==
|
||||
Prime1: +Ns6U9aZkGqxp+tfNwwCueu6zyIyQZKgLGVPcEZpbK0=
|
||||
Prime2: zH8uZiJTrlY39Az3+eiTMS4SGgBxAWeXlMC4DUrCJWE=
|
||||
Exponent1: +CZrwERDNy4dX2ums5aHdWvqCTh5UsfqbrrLfxLHd7U=
|
||||
Exponent2: Rz5Hu+1ZmfMPq0aZXcdZAFk8lTJyLDsa5AgAFyFkYgE=
|
||||
Coefficient: Rf2NFyo0bBow/KT2fAww0ePV8X24wk2Y/TPKWn8a99Y=
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20101021120536
|
||||
;% lifetime=3d
|
||||
sub.example.net. IN DNSKEY 256 3 10 BQEAAAABn8UTQYIEkX5bd7hPSpQ1VPJKNxl6iRQVozij1a5r4LcRPK3v mvMhZCOIvD3A1iym6hGnwkUHbmzpQx7W+J9uZbCtMA+NjnEwqR7Ac4WO 4ZJPovWjQhDpHuZzy6++9X5BY6GS2KSB6k5YE7Rtuc5SY+fIZhQnZ7Si fjGNJVWF98k=
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 10 (RSASHA512)
|
||||
Modulus: n8UTQYIEkX5bd7hPSpQ1VPJKNxl6iRQVozij1a5r4LcRPK3vmvMhZCOIvD3A1iym6hGnwkUHbmzpQx7W+J9uZbCtMA+NjnEwqR7Ac4WO4ZJPovWjQhDpHuZzy6++9X5BY6GS2KSB6k5YE7Rtuc5SY+fIZhQnZ7SifjGNJVWF98k=
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: JGn91bZcjzq8WiGhHg5kIsbDfb5kSpjhqbAypDkYPpby4T2Hd6rDqhRZMEZH5o7mC9tuzwwaY0jp7uZKiy0IZ62IqAUAsj/u1pjWh1TWQ7XrOIxkd2dNgkvvJ1sm7aAoDaSi/MrwinaFaqHoO0zmpMosBNL1parHedn5yWxeZQE=
|
||||
Prime1: 0ANDDIRnVYwNkuKYZ+TbawYq7DLdixk3L01nNt8BHts7Q8WXACfj3dfHO3qB/dT/xxbUDYWMOTGQXpXN2p5SoQ==
|
||||
Prime2: xKCziYPsyGD2yezOC9Awvy2vfb1Ev5zYAdXLSsbuy3sOGSJp7QiTuE+wazyUbkhhaKu5FpBnMdmFQgY2YK08KQ==
|
||||
Exponent1: SxN8PWTIv5haN0Mz4DE+9lN9qCxEqeuu9644AcD4w1GvgQEKN+nR5nYHhrSAgjQchD0G52sTVAAg9RVjSN/RgQ==
|
||||
Exponent2: CgqfFKLaSOmao8l4vmFyWjc1VWKSVHaVEOwYCqwFeXceni/OaN4ba5aXxhqxavj+M4/w2kURppUms00lkrv3QQ==
|
||||
Coefficient: nnIoXkPAvUfT5ypPCg4sM+OnZ38I4BlIdnjrWcNl340TG83bSH4mdf9mkIfvjpBBue9fHQ7WPRnawIUiU3/iNQ==
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20101021113820
|
||||
;% lifetime=7d
|
||||
sub.example.net. IN DNSKEY 257 3 10 BQEAAAABug/pvRR/mv4qDN3gWFRiir/6UNpnuBuVC4z7xeaNk/KdvcdD ibLrSZaGfcq7no3cPvRsJ/U7S6VvYXFZNaXvqJ66ZGcCtImIoaCZIQbo z3hFelJb/62KqZWcj1anv7+LmfYpuA1UJCWpFriWYhzuT3q98lG/c7Xq iX79Ytoy6P0=
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 10 (RSASHA512)
|
||||
Modulus: ug/pvRR/mv4qDN3gWFRiir/6UNpnuBuVC4z7xeaNk/KdvcdDibLrSZaGfcq7no3cPvRsJ/U7S6VvYXFZNaXvqJ66ZGcCtImIoaCZIQboz3hFelJb/62KqZWcj1anv7+LmfYpuA1UJCWpFriWYhzuT3q98lG/c7XqiX79Ytoy6P0=
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: IFVOvH94pIiUBAq8ix/GuYg0kLLpKFM0iBQ+j8OmyiZIKQUDSWSP7IU7UMFgh2DELdzwF6cTqBO5gjbesotzPvPny1/isM7N8Z1FN7j4/zBTDAXVHMYdcIZEC+UZkCEu6g206BnCCsLSQm1gcDFxkaqYtSD+I/dJ82YeWVM66OU=
|
||||
Prime1: 5hNJZCTszlcCQvDmXffAjt3oV4qDd1HJDcknvcmtimRqVFIDgK8UcCD2DMI1PBA+SmPSSiSU3mo4y/YKjXBvQw==
|
||||
Prime2: zwcHpDKsA5Pr9e+KcjFmZbNTCEqY2GiABxvOcmuqYvLf5pkjTkEiZm3pn23/eypzjpxnyDFzk6NM0HkKQkMivw==
|
||||
Exponent1: ZDECG7FYUKBEtvsq1t1lNUkyH9LAYl1eEt1rpnPXXK/JDSy5tMQeq4iCJY8hy+BE/WlxYQQ3OUENqhvhLgtC6Q==
|
||||
Exponent2: FifCGPMN4sIq/+rZC/F4AfEe8f0ZmTshsfVilVVkqUnavPahK9kk2jSEInk50CKpMqNCywF+fer/77+mxW7fCQ==
|
||||
Coefficient: yvTbE7YdfrvskUqVo+/KjEH3cu0oYl99AshpIOeBaQ5sNJtuZzHA6UEnVY0rc5Apli7sRVSsrJSZSqBeD6hMdQ==
|
||||
|
|
@ -1,68 +0,0 @@
|
|||
;
|
||||
; !!! Don't edit this file by hand.
|
||||
; !!! It will be generated by zkt-signer.
|
||||
;
|
||||
; Last generation time Jan 25 2011 20:02:30
|
||||
;
|
||||
|
||||
; *** List of Key Signing Keys ***
|
||||
; sub.example.net. tag=855 algo=NSEC3RSASHA1 generated Sep 24 2010 13:26:25
|
||||
sub.example.net. 14400 IN DNSKEY 257 3 7 (
|
||||
AwEAAcN4oi+shB1ZNhIXtSBuhAJKDp95Bc4H3MyhMxUos7VWVrsAxNK8
|
||||
u900fdubtofcoLR4FAoaPpX7LhQ1OPh+9RR4VIYrwilGkf2ZtZh0URwO
|
||||
ruYqvJAIf6ZTxyakaUaY5m0ABl1learg+XhjBHcMz3Lvx4Opnw5qsM+v
|
||||
nqJT15vd
|
||||
) ; key id = 855
|
||||
|
||||
; sub.example.net. tag=33176 algo=RSASHA512 generated Oct 21 2010 13:38:20
|
||||
sub.example.net. 14400 IN DNSKEY 257 3 10 (
|
||||
BQEAAAABug/pvRR/mv4qDN3gWFRiir/6UNpnuBuVC4z7xeaNk/KdvcdD
|
||||
ibLrSZaGfcq7no3cPvRsJ/U7S6VvYXFZNaXvqJ66ZGcCtImIoaCZIQbo
|
||||
z3hFelJb/62KqZWcj1anv7+LmfYpuA1UJCWpFriWYhzuT3q98lG/c7Xq
|
||||
iX79Ytoy6P0=
|
||||
) ; key id = 33176
|
||||
|
||||
; sub.example.net. tag=55983 algo=NSEC3RSASHA1 generated Nov 27 2010 11:17:03
|
||||
sub.example.net. 14400 IN DNSKEY 257 3 7 (
|
||||
AwEAAbv0XLM9qAEncwc4HjBamccNu/z+gPmnsp4bFEdz6YgPtSSIdUA+
|
||||
OChIBJg2fADBupHsmibB5E6IVHcuKO0OF4uiSv4FSk9p/2mioI9RxeSR
|
||||
xGQ6gds3DJBN8sw86LH8BjLynqY/Jw/D3BudvcDHJtz7HtCH0mNEL9eG
|
||||
hjzq+GW/
|
||||
) ; key id = 55983
|
||||
|
||||
; sub.example.net. tag=24183 algo=RSASHA1 generated Jan 25 2011 10:11:21
|
||||
sub.example.net. 14400 IN DNSKEY 257 3 5 (
|
||||
BQEAAAABCwsLhN2Fe4nAorCoXf8CU2c4QqxPyNDVOoGrOSw/u883bF0w
|
||||
hFeEDwQjnHD5xMwNvMk8gNJnxv2kp6lgUcx7CgC08VQD2ko9e4zLSvoR
|
||||
WqFZ57LXKDpKdNLuVHDA6RObDX1PG0wjeWTa2lXshlhGgnGnrQhnCjYl
|
||||
nnCCxgKdxwvRdLRpnqnpGCHRtj9THHOlkJuAC6bor4qlNlODIcDFBsFf
|
||||
+Q==
|
||||
) ; key id = 24183
|
||||
|
||||
; *** List of Zone Signing Keys ***
|
||||
; sub.example.net. tag=34493 algo=NSEC3RSASHA1 generated Sep 24 2010 13:26:25
|
||||
sub.example.net. 14400 IN DNSKEY 256 3 7 (
|
||||
AwEAAa5bMLD0fx/ZGgiuhgslScPhm3c3sbLKn5Kc9w63+VBcq5Bg9td+
|
||||
pME6uVtNvvAsgjoE2ORcqULqPp6ITd7VpTE=
|
||||
) ; key id = 34493
|
||||
|
||||
; sub.example.net. tag=7987 algo=RSASHA512 generated Oct 21 2010 14:05:36
|
||||
sub.example.net. 14400 IN DNSKEY 256 3 10 (
|
||||
BQEAAAABn8UTQYIEkX5bd7hPSpQ1VPJKNxl6iRQVozij1a5r4LcRPK3v
|
||||
mvMhZCOIvD3A1iym6hGnwkUHbmzpQx7W+J9uZbCtMA+NjnEwqR7Ac4WO
|
||||
4ZJPovWjQhDpHuZzy6++9X5BY6GS2KSB6k5YE7Rtuc5SY+fIZhQnZ7Si
|
||||
fjGNJVWF98k=
|
||||
) ; key id = 7987
|
||||
|
||||
; sub.example.net. tag=59870 algo=NSEC3RSASHA1 generated Nov 27 2010 11:17:03
|
||||
sub.example.net. 14400 IN DNSKEY 256 3 7 (
|
||||
AwEAAcbKVFdrzJmGoQCMYf9vwxdKrGrLk86OqVHVlXAwoHgdGpAjsga0
|
||||
FenJ7FwC4eqAxK0dUC86/dUX/YUFz0fBLo0=
|
||||
) ; key id = 59870
|
||||
|
||||
; sub.example.net. tag=44660 algo=RSASHA1 generated Jan 25 2011 10:11:21
|
||||
sub.example.net. 14400 IN DNSKEY 256 3 5 (
|
||||
BQEAAAABn6df/D+TwBypmBlabmitCSWnYLJFa/8Kk3W7Zj+ODS/kJA6s
|
||||
QZIQiLUK0sd/dM+A8+qAVlgwgQDxkAiuwrc7Lw==
|
||||
) ; key id = 44660
|
||||
|
||||
|
|
@ -1,48 +0,0 @@
|
|||
2010-10-21 14:01:35.486: debug: Check RFC5011 status
|
||||
2010-10-21 14:01:35.486: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-10-21 14:01:35.486: debug: Check KSK status
|
||||
2010-10-21 14:01:35.486: debug: Check ZSK status
|
||||
2010-10-21 14:01:35.486: debug: No active ZSK found: generate new one
|
||||
2010-10-21 14:01:35.495: error: sub.example.net.": can't generate new ZSK
|
||||
2010-10-21 14:01:35.495: debug: Re-signing necessary: Modfied zone key set
|
||||
2010-10-21 14:01:35.496: notice: "sub.example.net.": re-signing triggered: Modfied zone key set
|
||||
2010-10-21 14:01:35.496: debug: Writing key file "./sub.example.net/dnskey.db"
|
||||
2010-10-21 14:01:35.496: debug: Incrementing serial number in file "./sub.example.net/zone.db"
|
||||
2010-10-21 14:01:35.496: debug: Signing zone "sub.example.net."
|
||||
2010-10-21 14:01:35.496: debug: Run cmd "cd ./sub.example.net; /usr/local/sbin/dnssec-signzone -n 1 -u -3 9FC981 -C -g -p -d ../keysets -o sub.example.net. -e +172800 zone.db K*.private 2>&1"
|
||||
2010-10-21 14:01:35.546: debug: Cmd dnssec-signzone return: "dnssec-signzone: fatal: DNSSEC completeness test failed."
|
||||
2010-10-21 14:01:35.546: error: "sub.example.net.": signing failed!
|
||||
2010-10-21 14:02:09.146: debug: Check RFC5011 status
|
||||
2010-10-21 14:02:09.146: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-10-21 14:02:09.146: debug: Check KSK status
|
||||
2010-10-21 14:02:09.146: debug: Check ZSK status
|
||||
2010-10-21 14:02:09.146: debug: No active ZSK found: generate new one
|
||||
2010-10-21 14:02:09.156: error: sub.example.net.": can't generate new ZSK
|
||||
2010-10-21 14:02:09.156: debug: Re-signing necessary: Modified keys
|
||||
2010-10-21 14:02:09.156: notice: "sub.example.net.": re-signing triggered: Modified keys
|
||||
2010-10-21 14:02:09.156: debug: Writing key file "./sub.example.net/dnskey.db"
|
||||
2010-10-21 14:02:09.157: debug: Incrementing serial number in file "./sub.example.net/zone.db"
|
||||
2010-10-21 14:02:09.157: debug: Signing zone "sub.example.net."
|
||||
2010-10-21 14:02:09.157: debug: Run cmd "cd ./sub.example.net; /usr/local/sbin/dnssec-signzone -n 1 -u -3 BD326D -C -g -p -d ../keysets -o sub.example.net. -e +172800 zone.db K*.private 2>&1"
|
||||
2010-10-21 14:02:09.208: debug: Cmd dnssec-signzone return: "dnssec-signzone: fatal: DNSSEC completeness test failed."
|
||||
2010-10-21 14:02:09.208: error: "sub.example.net.": signing failed!
|
||||
2010-10-21 14:05:35.988: debug: Check RFC5011 status
|
||||
2010-10-21 14:05:35.988: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-10-21 14:05:35.988: debug: Check KSK status
|
||||
2010-10-21 14:05:35.988: debug: Check ZSK status
|
||||
2010-10-21 14:05:35.988: debug: No active ZSK found: generate new one
|
||||
2010-10-21 14:05:36.091: info: "sub.example.net.": generated new ZSK 7987
|
||||
2010-10-21 14:05:36.091: debug: Re-signing necessary: Modfied zone key set
|
||||
2010-10-21 14:05:36.091: notice: "sub.example.net.": re-signing triggered: Modfied zone key set
|
||||
2010-10-21 14:05:36.091: debug: Writing key file "./sub.example.net/dnskey.db"
|
||||
2010-10-21 14:05:36.091: debug: Incrementing serial number in file "./sub.example.net/zone.db"
|
||||
2010-10-21 14:05:36.091: debug: Signing zone "sub.example.net."
|
||||
2010-10-21 14:05:36.091: debug: Run cmd "cd ./sub.example.net; /usr/local/sbin/dnssec-signzone -n 1 -u -3 75DE06 -C -g -p -d ../keysets -o sub.example.net. -e +172800 zone.db K*.private 2>&1"
|
||||
2010-10-21 14:05:36.170: debug: Cmd dnssec-signzone return: "zone.db.signed"
|
||||
2010-10-21 14:05:36.170: debug: Signing completed after 0s.
|
||||
2010-10-21 14:30:43.892: debug: Check RFC5011 status
|
||||
2010-10-21 14:30:43.892: debug: ->not a rfc5011 zone, looking for a regular ksk rollover
|
||||
2010-10-21 14:30:43.892: debug: Check KSK status
|
||||
2010-10-21 14:30:43.892: debug: Check ZSK status
|
||||
2010-10-21 14:30:43.892: debug: Re-signing not necessary!
|
||||
2010-10-21 14:30:43.892: debug: Check if there is a parent file to copy
|
||||
|
|
@ -1,216 +0,0 @@
|
|||
; File written on Thu Oct 21 14:05:36 2010
|
||||
; dnssec_signzone version 9.7.2-P2
|
||||
sub.example.net. 7200 IN SOA ns1.example.net. hostmaster.example.net. (
|
||||
6 ; serial
|
||||
86400 ; refresh (1 day)
|
||||
1800 ; retry (30 minutes)
|
||||
1209600 ; expire (2 weeks)
|
||||
7200 ; minimum (2 hours)
|
||||
)
|
||||
7200 RRSIG SOA 7 3 7200 20101023110536 (
|
||||
20101021110536 34493 sub.example.net.
|
||||
MgaHCyEt33DXRMiHMpZr4x52phpp8hdqu05a
|
||||
bcQ7E2KGxpvsH8DtBDixo0WV73qDM45XT8mA
|
||||
9xLn3HBRSXP8Ag== )
|
||||
7200 RRSIG SOA 10 3 7200 20101023110536 (
|
||||
20101021110536 7987 sub.example.net.
|
||||
H3B12qsYiBhrloBItfIOkakV6kUfFEhdplBv
|
||||
T4n0rVihInOkC6SssFEMbe69rGvMgnzL8aCX
|
||||
rIsYDT7z0fCD5mvdFJ+rsYFCAW35nlZil9Lc
|
||||
xB27U+lMIngODjHiNShtjEXtKaQPKxbvbgSX
|
||||
nkZ0joeWdMIEYhihgCvWc+A1mv4= )
|
||||
7200 NS ns1.example.net.
|
||||
7200 RRSIG NS 7 3 7200 20101023110536 (
|
||||
20101021110536 34493 sub.example.net.
|
||||
QAt2BZsV7nxer/TFQLtQ/Xp8TYwiqqkmAcLa
|
||||
pLf8wBWMXFTxz3O29QF+RBSdmLqeoCgW+Q5g
|
||||
ygScSISe5nvKfw== )
|
||||
7200 RRSIG NS 10 3 7200 20101023110536 (
|
||||
20101021110536 7987 sub.example.net.
|
||||
cZHqQnIA/fTFZx6LroJNWj9jPLxrnZtTHvlp
|
||||
NqkTbLG5uu/+sljkOUOqHVqK9ubUESkRNP3u
|
||||
Nl/oROMcgISsDWRcEOu4Vc48zBn/90vJK5WY
|
||||
ZcXeGcp34pFMK7/03vEH4U1tZKc7Guvm3reh
|
||||
gcfNBotu57wvctbjlqq3DM4axwI= )
|
||||
3600 DNSKEY 256 3 7 (
|
||||
AwEAAa5bMLD0fx/ZGgiuhgslScPhm3c3sbLK
|
||||
n5Kc9w63+VBcq5Bg9td+pME6uVtNvvAsgjoE
|
||||
2ORcqULqPp6ITd7VpTE=
|
||||
) ; key id = 34493
|
||||
3600 DNSKEY 256 3 10 (
|
||||
BQEAAAABn8UTQYIEkX5bd7hPSpQ1VPJKNxl6
|
||||
iRQVozij1a5r4LcRPK3vmvMhZCOIvD3A1iym
|
||||
6hGnwkUHbmzpQx7W+J9uZbCtMA+NjnEwqR7A
|
||||
c4WO4ZJPovWjQhDpHuZzy6++9X5BY6GS2KSB
|
||||
6k5YE7Rtuc5SY+fIZhQnZ7SifjGNJVWF98k=
|
||||
) ; key id = 7987
|
||||
3600 DNSKEY 257 3 7 (
|
||||
AwEAAcN4oi+shB1ZNhIXtSBuhAJKDp95Bc4H
|
||||
3MyhMxUos7VWVrsAxNK8u900fdubtofcoLR4
|
||||
FAoaPpX7LhQ1OPh+9RR4VIYrwilGkf2ZtZh0
|
||||
URwOruYqvJAIf6ZTxyakaUaY5m0ABl1learg
|
||||
+XhjBHcMz3Lvx4Opnw5qsM+vnqJT15vd
|
||||
) ; key id = 855
|
||||
3600 DNSKEY 257 3 10 (
|
||||
BQEAAAABug/pvRR/mv4qDN3gWFRiir/6UNpn
|
||||
uBuVC4z7xeaNk/KdvcdDibLrSZaGfcq7no3c
|
||||
PvRsJ/U7S6VvYXFZNaXvqJ66ZGcCtImIoaCZ
|
||||
IQboz3hFelJb/62KqZWcj1anv7+LmfYpuA1U
|
||||
JCWpFriWYhzuT3q98lG/c7XqiX79Ytoy6P0=
|
||||
) ; key id = 33176
|
||||
3600 RRSIG DNSKEY 7 3 3600 20101023110536 (
|
||||
20101021110536 855 sub.example.net.
|
||||
NcmO3PoVofXHe6EbmnSCkr4eTfuTkdtEQQWv
|
||||
8pbHY0Ze8NR4ISjzJf1zC4U4fJsYeS9AUL5A
|
||||
2l6qEWoY8cbPRdDnf2iKfHKTllXFubM6EtYF
|
||||
aKmK38BU1Ldh6jdcJ0bFUN4cMPVhX9BA+yTM
|
||||
Hm0EdYZvC6QICrlQBdJuyzS3FSA= )
|
||||
3600 RRSIG DNSKEY 7 3 3600 20101023110536 (
|
||||
20101021110536 34493 sub.example.net.
|
||||
GLVb5YgQWtP2bHWBihGhCymm9P7pjDdN9s0c
|
||||
9nK6Pi8OWoa2uK7k/ebVXDNc/yBI/hp5Xsxs
|
||||
x332lhi8AdMW3Q== )
|
||||
3600 RRSIG DNSKEY 10 3 3600 20101023110536 (
|
||||
20101021110536 7987 sub.example.net.
|
||||
UwnLE8FmOtd0DbTXzv9QJZigJThWAw29ov6N
|
||||
HnSI4cO4pyFRjiGee7+/u4DfKFUkzQp2ySIW
|
||||
+jhGsF/b2TEpLyLSwY/r8iDhO0GkaU5t/tzr
|
||||
wCX7HCmr6VAJaPpZhf/xLEh7pbB60jQmiHXy
|
||||
4tEfQtpkPx6ncQ95lcoN2ia43Ow= )
|
||||
3600 RRSIG DNSKEY 10 3 3600 20101023110536 (
|
||||
20101021110536 33176 sub.example.net.
|
||||
HclPEAN+ii66jqPzYE4hbSnUNg1/xFfM0R/a
|
||||
iVh40da5Wre0GzzfYouOdJegJoyDGsz+xEzN
|
||||
g+RiUYFDg2cK9Y7HqX3T3nEtMMavRbb+4q93
|
||||
PRk0kZ9H/xjSqK+qTipCMz6IubOXZjzvK+sB
|
||||
VOxv3uzhmR8WmKoVraB5uDeK+vA= )
|
||||
0 NSEC3PARAM 1 0 10 75DE06
|
||||
0 RRSIG NSEC3PARAM 7 3 0 20101023110536 (
|
||||
20101021110536 34493 sub.example.net.
|
||||
hPzjAlPJldxukEVzgVKHbJdGI/0M5JhvfOu5
|
||||
+s5+5mst1tp6goSpOxdyklpBSC4eJmPFQk2A
|
||||
gWenAJCHr6s5NQ== )
|
||||
0 RRSIG NSEC3PARAM 10 3 0 20101023110536 (
|
||||
20101021110536 7987 sub.example.net.
|
||||
hEjMFl/Znyvr73gN4fAvWHsy2Sxlga8L6xu+
|
||||
IffQTRiA0itHseM2G4TfAZju7g9HmFxSsCZO
|
||||
EKdn3WwsyxBD0mfaBdHSaNrQu6EttiMyoMVu
|
||||
WhiitsOAXB1iHRzE21jfZJpQSFBHPiNMCz1F
|
||||
cQoRlBqYUWeyRMJN+wEHthuSpl0= )
|
||||
a.sub.example.net. 7200 IN A 1.2.3.4
|
||||
7200 RRSIG A 7 4 7200 20101023110536 (
|
||||
20101021110536 34493 sub.example.net.
|
||||
oGoHPU1IgTXwKhHef6Dsq7X2r1eRbSK+8fsD
|
||||
zPGfmYo4BMKBrTPiKvTapulXIWxNslLbJhoq
|
||||
Mx3prAl4n0JbBw== )
|
||||
7200 RRSIG A 10 4 7200 20101023110536 (
|
||||
20101021110536 7987 sub.example.net.
|
||||
ePqwuNrBwH2rkAFoHR1nHCIc9Daz/Hsze5R0
|
||||
x9p2GXujziIuvLPz9G7DpytY+pDpJr9m0djG
|
||||
J1jcceazK11q53FN9gby2Tv39hEoyaySEoiy
|
||||
cv1ArJaeppfeUgJmBp6GsHznz6amGXG0vig3
|
||||
4I6tdWpwfbl+rnOUDAf5AIxUHEE= )
|
||||
b.sub.example.net. 7200 IN A 1.2.3.5
|
||||
7200 RRSIG A 7 4 7200 20101023110536 (
|
||||
20101021110536 34493 sub.example.net.
|
||||
X2X5/rztMhu0Es2A7dsENoAf/sCTahSa6cPL
|
||||
M4j/r9ofiV+tQDn8cnfnrArA5d9/wND+5Iv+
|
||||
/O1GOzwOhzhLHg== )
|
||||
7200 RRSIG A 10 4 7200 20101023110536 (
|
||||
20101021110536 7987 sub.example.net.
|
||||
TxLKcfmsmHovdKvzgmqTOI5x1ve4VrLNxXnv
|
||||
0cBflqfHTTVH6glO1nsC9q15wI4xt3INq6fp
|
||||
/+CRhIASy63i1UA5PPQ4UgxcgOTEuSgu51XJ
|
||||
SVvxBatjzTVPWO5K+bNJRz9O7sDbFbKLuSIv
|
||||
94ZmQIpBERh5pLglmYESwcCwv/U= )
|
||||
c.sub.example.net. 7200 IN A 1.2.3.6
|
||||
7200 RRSIG A 7 4 7200 20101023110536 (
|
||||
20101021110536 34493 sub.example.net.
|
||||
S1BC7yaofioxw9W6lH5EXOjGrj0nSCdbnwcX
|
||||
orVRkaWq4Ic8rDsvmlL70UMLUwwUKv7cmUEH
|
||||
61KhLHI6L7bk0Q== )
|
||||
7200 RRSIG A 10 4 7200 20101023110536 (
|
||||
20101021110536 7987 sub.example.net.
|
||||
NRiWhJ8oTAyyJUiJI9bBWDG/OzF0dQ6WqBES
|
||||
pJq5LyN10EeHSX96xcgPHMdGw9VGqep1e9G4
|
||||
B+sYfmcsET7LdUNncyKS8Plvs/9rO7QW2lfE
|
||||
S0gnoCmLe8PK8Z33Bh8k/tXjJjB5GpYCwXnn
|
||||
WnBuKZk6KL6yr/BRz7SpmYYn7zY= )
|
||||
localhost.sub.example.net. 7200 IN A 127.0.0.1
|
||||
7200 RRSIG A 7 4 7200 20101023110536 (
|
||||
20101021110536 34493 sub.example.net.
|
||||
jYhG4Tp8AxSnwl9bFIzNcLHj+MMi2QY8cW+U
|
||||
Mbw2++3fDsDyrzV9qOAkemUTeTw+wX/z7Iu8
|
||||
wtPCTzy6oKPZew== )
|
||||
7200 RRSIG A 10 4 7200 20101023110536 (
|
||||
20101021110536 7987 sub.example.net.
|
||||
F03HIz1yPabXrvyaByqN6tvGCThqI/FVZXl1
|
||||
l5oSJJ4gGE9wjtbgSbyMnQQ09Vp/FxZD5nk0
|
||||
zWYJXSyJCi1eWD3CV1xp6zbl2Z5jh6X70qpq
|
||||
Z8mAj+tt8gFrlvR49doEnIKtz7Nupmk8VM0Q
|
||||
ir091k0On6d6xkAaG2DdB6Cd8IY= )
|
||||
E23J36747M9QAHTBMRSQ0EHB5D8JF31O.sub.example.net. 7200 IN NSEC3 1 0 10 75DE06 GMMG72L8KNTF7A2QLCMLH1I5RG5V8RKK A RRSIG
|
||||
7200 RRSIG NSEC3 7 4 7200 20101023110536 (
|
||||
20101021110536 34493 sub.example.net.
|
||||
YnvMl6XcqOZq4T/nz688NADoYegQu6Ct1+wU
|
||||
Abx5vuVLb5CkwK6cGTPazni2xZnNTiXiIi87
|
||||
dzLHGQTaup4xxg== )
|
||||
7200 RRSIG NSEC3 10 4 7200 20101023110536 (
|
||||
20101021110536 7987 sub.example.net.
|
||||
P/8DdSZU4Ag3ibdsalE+FBDa7+a0W4R/jB5a
|
||||
pqvmkox4fZB20k8MrMxn8hbHJOxFD4FAdOrm
|
||||
Bc+ut45HYx4c0wE3WekmuBIkS5gWWGsvCqji
|
||||
hquZMORyZjT9Tk/VezHXuJ9jMA4vCuPbqTsX
|
||||
Y2liJS0Vzrr6rssF5Mz36OQrG/w= )
|
||||
GMMG72L8KNTF7A2QLCMLH1I5RG5V8RKK.sub.example.net. 7200 IN NSEC3 1 0 10 75DE06 H856ATS51TP5R6A4PJ4H623HBD22MMP8 A RRSIG
|
||||
7200 RRSIG NSEC3 7 4 7200 20101023110536 (
|
||||
20101021110536 34493 sub.example.net.
|
||||
IHxHqJw0w0yzAdM9Dc0wdH9t9vdqXO9Xxx7/
|
||||
CSyL+852/nuflS/a/+AwDyZhuMwqKR021/Jm
|
||||
0E2bTZvH8qNuGA== )
|
||||
7200 RRSIG NSEC3 10 4 7200 20101023110536 (
|
||||
20101021110536 7987 sub.example.net.
|
||||
VssB9MTMT6Meh7pVOF0aWcpx6PLRR7z97Jf4
|
||||
LeWFPhw3w5BTWff4BL45omopYaMCDamqirYa
|
||||
zmhlKyqE7qEtGop8fUiNmFdK5+cPhhGGVbhV
|
||||
B+k7ZWC5H9fwI61owUG2btP+oLaOgJejXLqr
|
||||
27EnZ8aE2bmGdYcN1Ji8QtRWaXQ= )
|
||||
H856ATS51TP5R6A4PJ4H623HBD22MMP8.sub.example.net. 7200 IN NSEC3 1 0 10 75DE06 T9JU0DUS5QPJR2HUCAOK4CTRF8OFCVCJ A RRSIG
|
||||
7200 RRSIG NSEC3 7 4 7200 20101023110536 (
|
||||
20101021110536 34493 sub.example.net.
|
||||
LKo4fE/ql/oQCkZeNxNcT6o/201bdnpEvreO
|
||||
EcOTjUGfGiJ5KCUH4dSz8aQFdVwBfJEmA0v1
|
||||
NpjbLSeDJ2ArNg== )
|
||||
7200 RRSIG NSEC3 10 4 7200 20101023110536 (
|
||||
20101021110536 7987 sub.example.net.
|
||||
ePRVEMqfub0TQ7NciAg+PXzIBa2CJ8226mqn
|
||||
wuSymuImvb5TJ6uwNX1b17WJ3XrXxE/mBbZ6
|
||||
LqpU3KNEsi0hb3mx9atSy9d3/oAi/A1QeC78
|
||||
y/LxyyYoIgoBrnQ6AF7zsqX1SWz+DjFl8E58
|
||||
uaZnYfL0q6RbGZ5cJxu1bhPw1Vo= )
|
||||
T9JU0DUS5QPJR2HUCAOK4CTRF8OFCVCJ.sub.example.net. 7200 IN NSEC3 1 0 10 75DE06 V5QI8VK5I93U0UCL19L7B0SU5SVTJQS7 NS SOA RRSIG DNSKEY NSEC3PARAM
|
||||
7200 RRSIG NSEC3 7 4 7200 20101023110536 (
|
||||
20101021110536 34493 sub.example.net.
|
||||
BZ8wR07wrdenmmNFWKhMGckWQwZlfVuZhULf
|
||||
4VZfWLo+8NFhDk6MjdVV3QrpEsF5XhR8r+0V
|
||||
ZxU2ZsHWpcYbsw== )
|
||||
7200 RRSIG NSEC3 10 4 7200 20101023110536 (
|
||||
20101021110536 7987 sub.example.net.
|
||||
TnOhLkcIl30DqXTbGMarRvLPfGbv/HHBG44E
|
||||
07Gpcq2M/+nbPW8A35sHsaalTi7Jdr870mk8
|
||||
XvvgUzoLlm200ssnGX+PAfzz7MyISqO2XBaa
|
||||
k54+2A3V20Aecgk0sjkG8uS1vIcWmXqXUxcp
|
||||
JpkNIio9S/WjTX85sVo+ug3qDYQ= )
|
||||
V5QI8VK5I93U0UCL19L7B0SU5SVTJQS7.sub.example.net. 7200 IN NSEC3 1 0 10 75DE06 E23J36747M9QAHTBMRSQ0EHB5D8JF31O A RRSIG
|
||||
7200 RRSIG NSEC3 7 4 7200 20101023110536 (
|
||||
20101021110536 34493 sub.example.net.
|
||||
VDvPAecgBeCvTDTaE7zA4TQR5jgOBTmygaWd
|
||||
GyxEI9uOCXAocdMjrfNq+c/SIymog6CYXCcT
|
||||
hbdOetaD3duYJw== )
|
||||
7200 RRSIG NSEC3 10 4 7200 20101023110536 (
|
||||
20101021110536 7987 sub.example.net.
|
||||
BuJnVwod8SlcTwNnb8RPmhPDsycpRpmD69BZ
|
||||
778M9p3BvHkYyr8xbWP8+OmhO880V3dRdpqx
|
||||
Hq0tyvarF8SVN8J7jMCZ1W9V2NxiLp50S/rN
|
||||
sDkl9l4LzSClgELSeNTFdyA/22asyYZ5XO6N
|
||||
t/f5BtsYe9W80n87cnAOmbAUIgg= )
|
||||
|
|
@ -1 +0,0 @@
|
|||
../zkt-ls.sh
|
||||
|
|
@ -1 +0,0 @@
|
|||
../zkt-signer.sh
|
||||
|
|
@ -1,423 +0,0 @@
|
|||
2010-02-07 13:53:47.881: notice: ------------------------------------------------------------
|
||||
2010-02-07 13:53:47.881: notice: running ../../zkt-signer -v -v
|
||||
2010-02-07 13:53:47.883: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-02-07 13:53:48.304: debug:
|
||||
2010-02-07 13:53:48.304: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-02-07 13:53:48.305: debug:
|
||||
2010-02-07 13:53:48.305: notice: end of run: 0 errors occured
|
||||
2010-02-07 13:54:03.463: notice: ------------------------------------------------------------
|
||||
2010-02-07 13:54:03.464: notice: running ../../zkt-signer -r -v -v
|
||||
2010-02-07 13:54:03.465: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-02-07 13:54:03.466: debug:
|
||||
2010-02-07 13:54:03.466: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-02-07 13:54:03.466: debug:
|
||||
2010-02-07 13:54:03.466: notice: end of run: 0 errors occured
|
||||
2010-02-07 13:54:07.953: notice: ------------------------------------------------------------
|
||||
2010-02-07 13:54:07.953: notice: running ../../zkt-signer -f -r -v -v
|
||||
2010-02-07 13:54:07.955: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-02-07 13:54:08.019: debug:
|
||||
2010-02-07 13:54:08.019: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-02-07 13:54:08.139: debug:
|
||||
2010-02-07 13:54:08.139: notice: end of run: 0 errors occured
|
||||
2010-02-07 14:06:27.666: notice: ------------------------------------------------------------
|
||||
2010-02-07 14:06:27.666: notice: running ../../zkt-signer -r -v -v
|
||||
2010-02-07 14:06:27.668: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-02-07 14:06:27.670: debug:
|
||||
2010-02-07 14:06:27.670: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-02-07 14:06:27.671: debug:
|
||||
2010-02-07 14:06:27.671: notice: end of run: 0 errors occured
|
||||
2010-02-07 14:06:33.711: notice: ------------------------------------------------------------
|
||||
2010-02-07 14:06:33.711: notice: running ../../zkt-signer -f -r -v -v
|
||||
2010-02-07 14:06:33.713: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-02-07 14:06:33.753: debug:
|
||||
2010-02-07 14:06:33.753: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-02-07 14:06:33.797: debug:
|
||||
2010-02-07 14:06:33.797: notice: end of run: 0 errors occured
|
||||
2010-02-07 14:07:49.243: notice: ------------------------------------------------------------
|
||||
2010-02-07 14:07:49.243: notice: running ../../zkt-signer -d -r -v -v
|
||||
2010-02-07 14:07:49.245: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-02-07 14:07:49.832: debug:
|
||||
2010-02-07 14:07:49.832: notice: end of run: 1 error occured
|
||||
2010-02-07 14:09:41.710: notice: ------------------------------------------------------------
|
||||
2010-02-07 14:09:41.710: notice: running ../../zkt-signer -d -r -v -v
|
||||
2010-02-07 14:09:41.712: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-02-07 14:09:41.799: debug:
|
||||
2010-02-07 14:09:41.799: notice: end of run: 1 error occured
|
||||
2010-02-07 14:10:24.426: notice: ------------------------------------------------------------
|
||||
2010-02-07 14:10:24.427: notice: running ../../zkt-signer -d -v -v
|
||||
2010-02-07 14:10:24.429: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-02-07 14:10:24.429: debug:
|
||||
2010-02-07 14:10:24.429: notice: end of run: 0 errors occured
|
||||
2010-02-07 14:11:00.715: notice: ------------------------------------------------------------
|
||||
2010-02-07 14:11:00.715: notice: running ../../zkt-signer -f -d -v -v
|
||||
2010-02-07 14:11:00.717: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-02-07 14:11:00.803: debug:
|
||||
2010-02-07 14:11:00.803: notice: end of run: 1 error occured
|
||||
2010-02-07 15:11:02.629: notice: ------------------------------------------------------------
|
||||
2010-02-07 15:11:02.629: notice: running ../../zkt-signer -f -d -v -v
|
||||
2010-02-07 15:11:02.630: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-02-07 15:11:03.799: debug:
|
||||
2010-02-07 15:11:03.799: notice: end of run: 1 error occured
|
||||
2010-02-07 15:15:02.094: notice: ------------------------------------------------------------
|
||||
2010-02-07 15:15:02.094: notice: running ../../zkt-signer -f -d -v -v
|
||||
2010-02-07 15:15:02.095: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-02-07 15:15:02.270: debug:
|
||||
2010-02-07 15:15:02.270: notice: end of run: 0 errors occured
|
||||
2010-02-07 15:32:48.955: notice: ------------------------------------------------------------
|
||||
2010-02-07 15:32:48.955: notice: running ../../zkt-signer -f -d -v -v
|
||||
2010-02-07 15:32:48.957: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-02-07 15:32:49.007: debug:
|
||||
2010-02-07 15:32:49.007: notice: end of run: 0 errors occured
|
||||
2010-02-07 15:38:31.400: notice: ------------------------------------------------------------
|
||||
2010-02-07 15:38:31.400: notice: running ../../zkt-signer -f -d -v -v
|
||||
2010-02-07 15:38:31.402: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-02-07 15:38:31.456: debug:
|
||||
2010-02-07 15:38:31.456: notice: end of run: 0 errors occured
|
||||
2010-02-21 12:50:43.100: notice: ------------------------------------------------------------
|
||||
2010-02-21 12:50:43.100: notice: running ../../zkt-signer
|
||||
2010-02-21 12:50:43.176: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-02-21 12:50:43.586: debug:
|
||||
2010-02-21 12:50:43.586: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-02-21 12:50:43.733: debug:
|
||||
2010-02-21 12:50:43.733: notice: end of run: 0 errors occured
|
||||
2010-02-21 12:50:51.156: notice: ------------------------------------------------------------
|
||||
2010-02-21 12:50:51.156: notice: running ../../zkt-signer -v -v
|
||||
2010-02-21 12:50:51.158: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-02-21 12:50:51.205: debug:
|
||||
2010-02-21 12:50:51.205: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-02-21 12:50:51.205: debug:
|
||||
2010-02-21 12:50:51.205: notice: end of run: 0 errors occured
|
||||
2010-02-21 12:51:23.495: notice: ------------------------------------------------------------
|
||||
2010-02-21 12:51:23.495: notice: running ../../zkt-signer -v -v
|
||||
2010-02-21 12:51:23.497: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-02-21 12:51:23.497: debug:
|
||||
2010-02-21 12:51:23.497: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-02-21 12:51:23.497: debug:
|
||||
2010-02-21 12:51:23.497: notice: end of run: 0 errors occured
|
||||
2010-02-21 19:16:18.383: notice: ------------------------------------------------------------
|
||||
2010-02-21 19:16:18.383: notice: running ../../zkt-signer -v -v
|
||||
2010-02-21 19:16:18.384: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-02-21 19:16:18.593: debug:
|
||||
2010-02-21 19:16:18.594: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-02-21 19:16:18.594: debug:
|
||||
2010-02-21 19:16:18.594: notice: end of run: 0 errors occured
|
||||
2010-02-21 19:16:23.964: notice: ------------------------------------------------------------
|
||||
2010-02-21 19:16:23.964: notice: running ../../zkt-signer -d -v -v
|
||||
2010-02-21 19:16:24.018: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-02-21 19:16:24.440: debug:
|
||||
2010-02-21 19:16:24.440: notice: end of run: 0 errors occured
|
||||
2010-02-21 19:32:05.895: notice: ------------------------------------------------------------
|
||||
2010-02-21 19:32:05.895: notice: running ../../zkt-signer -d -v -v
|
||||
2010-02-21 19:32:05.896: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-02-21 19:32:05.897: debug:
|
||||
2010-02-21 19:32:05.897: notice: end of run: 0 errors occured
|
||||
2010-02-21 19:32:11.376: notice: ------------------------------------------------------------
|
||||
2010-02-21 19:32:11.376: notice: running ../../zkt-signer -v -v
|
||||
2010-02-21 19:32:11.378: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-02-21 19:32:11.378: debug:
|
||||
2010-02-21 19:32:11.378: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-02-21 19:32:11.378: debug:
|
||||
2010-02-21 19:32:11.378: notice: end of run: 0 errors occured
|
||||
2010-02-21 19:32:15.928: notice: ------------------------------------------------------------
|
||||
2010-02-21 19:32:15.928: notice: running ../../zkt-signer -f -v -v
|
||||
2010-02-21 19:32:15.930: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-02-21 19:32:15.982: debug:
|
||||
2010-02-21 19:32:15.982: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-02-21 19:32:16.019: debug:
|
||||
2010-02-21 19:32:16.019: notice: end of run: 0 errors occured
|
||||
2010-02-21 19:32:32.201: notice: ------------------------------------------------------------
|
||||
2010-02-21 19:32:32.201: notice: running ../../zkt-signer -f -v -v
|
||||
2010-02-21 19:32:32.202: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-02-21 19:32:32.232: debug:
|
||||
2010-02-21 19:32:32.232: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-02-21 19:32:32.273: debug:
|
||||
2010-02-21 19:32:32.273: notice: end of run: 0 errors occured
|
||||
2010-02-21 19:32:37.105: notice: ------------------------------------------------------------
|
||||
2010-02-21 19:32:37.105: notice: running ../../zkt-signer -d -f -v -v
|
||||
2010-02-21 19:32:37.107: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-02-21 19:32:37.156: debug:
|
||||
2010-02-21 19:32:37.156: notice: end of run: 0 errors occured
|
||||
2010-02-21 19:43:15.017: notice: ------------------------------------------------------------
|
||||
2010-02-21 19:43:15.017: notice: running ../../zkt-signer -d -v -v
|
||||
2010-02-21 19:43:15.018: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-02-21 19:43:15.387: debug:
|
||||
2010-02-21 19:43:15.387: notice: end of run: 1 error occured
|
||||
2010-02-21 19:45:36.413: notice: ------------------------------------------------------------
|
||||
2010-02-21 19:45:36.413: notice: running ../../zkt-signer -d -v -v
|
||||
2010-02-21 19:45:36.415: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-02-21 19:45:36.416: debug:
|
||||
2010-02-21 19:45:36.416: notice: end of run: 0 errors occured
|
||||
2010-02-21 19:45:41.446: notice: ------------------------------------------------------------
|
||||
2010-02-21 19:45:41.446: notice: running ../../zkt-signer -f -d -v -v
|
||||
2010-02-21 19:45:41.448: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-02-21 19:45:41.482: debug:
|
||||
2010-02-21 19:45:41.482: notice: end of run: 1 error occured
|
||||
2010-02-21 19:47:06.897: notice: ------------------------------------------------------------
|
||||
2010-02-21 19:47:06.897: notice: running ../../zkt-signer -f -d -v -v
|
||||
2010-02-21 19:47:06.899: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-02-21 19:47:06.935: debug:
|
||||
2010-02-21 19:47:06.935: notice: end of run: 1 error occured
|
||||
2010-02-21 19:58:40.971: notice: ------------------------------------------------------------
|
||||
2010-02-21 19:58:40.971: notice: running ../../zkt-signer -f -d -v -v
|
||||
2010-02-21 19:58:40.972: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-02-21 19:58:41.008: debug:
|
||||
2010-02-21 19:58:41.008: notice: end of run: 1 error occured
|
||||
2010-02-21 20:00:48.831: notice: ------------------------------------------------------------
|
||||
2010-02-21 20:00:48.831: notice: running ../../zkt-signer -f -d -v -v
|
||||
2010-02-21 20:00:48.832: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-02-21 20:00:48.884: debug:
|
||||
2010-02-21 20:00:48.884: notice: end of run: 0 errors occured
|
||||
2010-02-21 20:01:11.175: notice: ------------------------------------------------------------
|
||||
2010-02-21 20:01:11.175: notice: running ../../zkt-signer -f -d -v -v
|
||||
2010-02-21 20:01:11.175: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-02-21 20:01:11.208: debug:
|
||||
2010-02-21 20:01:11.208: notice: end of run: 0 errors occured
|
||||
2010-02-21 20:01:17.174: notice: ------------------------------------------------------------
|
||||
2010-02-21 20:01:17.174: notice: running ../../zkt-signer -d -v -v
|
||||
2010-02-21 20:01:17.175: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-02-21 20:01:17.176: debug:
|
||||
2010-02-21 20:01:17.176: notice: end of run: 0 errors occured
|
||||
2010-02-25 00:12:26.362: notice: ------------------------------------------------------------
|
||||
2010-02-25 00:12:26.362: notice: running ../../zkt-signer -v -v
|
||||
2010-02-25 00:12:26.442: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-02-25 00:12:27.060: debug:
|
||||
2010-02-25 00:12:27.060: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-02-25 00:12:27.177: debug:
|
||||
2010-02-25 00:12:27.177: notice: end of run: 0 errors occured
|
||||
2010-02-25 23:42:20.621: notice: ------------------------------------------------------------
|
||||
2010-02-25 23:42:20.621: notice: running ../../zkt-signer -v -v
|
||||
2010-02-25 23:42:20.653: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-02-25 23:42:21.012: debug:
|
||||
2010-02-25 23:42:21.013: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-02-25 23:42:21.021: debug:
|
||||
2010-02-25 23:42:21.021: notice: end of run: 0 errors occured
|
||||
2010-02-25 23:42:29.324: notice: ------------------------------------------------------------
|
||||
2010-02-25 23:42:29.324: notice: running ../../zkt-signer -d -v -v
|
||||
2010-02-25 23:42:29.326: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-02-25 23:42:29.497: debug:
|
||||
2010-02-25 23:42:29.497: notice: end of run: 0 errors occured
|
||||
2010-03-02 10:59:11.813: notice: ------------------------------------------------------------
|
||||
2010-03-02 10:59:11.813: notice: running ../../zkt-signer -v -v
|
||||
2010-03-02 10:59:11.845: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-03-02 10:59:12.416: debug:
|
||||
2010-03-02 10:59:12.416: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-03-02 10:59:12.531: debug:
|
||||
2010-03-02 10:59:12.531: notice: end of run: 0 errors occured
|
||||
2010-03-02 10:59:46.768: notice: ------------------------------------------------------------
|
||||
2010-03-02 10:59:46.768: notice: running ../../zkt-signer -d -v -v
|
||||
2010-03-02 10:59:46.769: debug: parsing zone "dyn.example.net." in dir "./dyn.example.net"
|
||||
2010-03-02 10:59:46.995: debug:
|
||||
2010-03-02 10:59:46.995: notice: end of run: 0 errors occured
|
||||
2010-03-03 23:22:00.105: notice: ------------------------------------------------------------
|
||||
2010-03-03 23:22:00.105: notice: running ../../zkt-signer -v -v
|
||||
2010-03-03 23:22:00.127: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-03-03 23:22:00.415: debug:
|
||||
2010-03-03 23:22:00.415: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-03-03 23:22:00.416: debug:
|
||||
2010-03-03 23:22:00.416: notice: end of run: 0 errors occured
|
||||
2010-03-08 23:11:49.633: notice: ------------------------------------------------------------
|
||||
2010-03-08 23:11:49.633: notice: running ../../zkt-signer -v -v -N named.conf
|
||||
2010-03-08 23:11:49.663: debug: parsing zone "sub.example.net." in dir "././sub.example.net"
|
||||
2010-03-08 23:11:50.170: debug:
|
||||
2010-03-08 23:11:50.170: debug: parsing zone "example.net." in dir "././example.net"
|
||||
2010-03-08 23:11:50.295: debug:
|
||||
2010-03-08 23:11:50.295: notice: end of run: 0 errors occured
|
||||
2010-03-08 23:12:56.211: notice: ------------------------------------------------------------
|
||||
2010-03-08 23:12:56.211: notice: running ../../zkt-signer -v -v -N named.conf
|
||||
2010-03-08 23:12:56.212: debug: parsing zone "example.net." in dir "././example.net"
|
||||
2010-03-08 23:12:56.279: debug:
|
||||
2010-03-08 23:12:56.279: notice: end of run: 0 errors occured
|
||||
2010-03-08 23:13:36.982: notice: ------------------------------------------------------------
|
||||
2010-03-08 23:13:36.983: notice: running ../../zkt-signer -v -v -N named.conf
|
||||
2010-03-08 23:13:36.984: debug: parsing zone "example.net." in dir "././example.net"
|
||||
2010-03-08 23:13:36.985: debug:
|
||||
2010-03-08 23:13:36.985: notice: end of run: 0 errors occured
|
||||
2010-03-08 23:18:52.241: notice: ------------------------------------------------------------
|
||||
2010-03-08 23:18:52.241: notice: running ../../zkt-signer -v -v -N named.conf
|
||||
2010-03-08 23:18:52.243: debug: parsing zone "sub.example.net." in dir "././sub.example.net"
|
||||
2010-03-08 23:18:52.287: debug:
|
||||
2010-03-08 23:18:52.287: debug: parsing zone "example.net." in dir "././example.net"
|
||||
2010-03-08 23:18:52.287: debug:
|
||||
2010-03-08 23:18:52.287: notice: end of run: 0 errors occured
|
||||
2010-03-11 23:46:35.453: notice: ------------------------------------------------------------
|
||||
2010-03-11 23:46:35.453: notice: running ../../zkt-signer -v -v
|
||||
2010-03-11 23:46:35.497: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-03-11 23:46:35.831: debug:
|
||||
2010-03-11 23:46:35.831: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-03-11 23:46:35.929: debug:
|
||||
2010-03-11 23:46:35.930: notice: end of run: 0 errors occured
|
||||
2010-03-11 23:52:33.130: notice: ------------------------------------------------------------
|
||||
2010-03-11 23:52:33.130: notice: running ../../zkt-signer -v -v
|
||||
2010-03-11 23:52:33.132: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-03-11 23:52:33.132: debug:
|
||||
2010-03-11 23:52:33.132: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-03-11 23:52:33.408: debug:
|
||||
2010-03-11 23:52:33.408: notice: end of run: 1 error occured
|
||||
2010-03-11 23:53:27.802: notice: ------------------------------------------------------------
|
||||
2010-03-11 23:53:27.802: notice: running ../../zkt-signer -v -v
|
||||
2010-03-11 23:53:27.804: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-03-11 23:53:27.856: debug:
|
||||
2010-03-11 23:53:27.856: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-03-11 23:53:27.920: debug:
|
||||
2010-03-11 23:53:27.920: notice: end of run: 0 errors occured
|
||||
2010-07-05 08:15:23.500: notice: ------------------------------------------------------------
|
||||
2010-07-05 08:15:23.500: notice: running ../../zkt-signer
|
||||
2010-07-05 08:15:23.502: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-07-05 08:15:24.179: debug:
|
||||
2010-07-05 08:15:24.179: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-07-05 08:15:24.316: debug:
|
||||
2010-07-05 08:15:24.316: notice: end of run: 0 errors occured
|
||||
2010-07-05 08:15:28.171: notice: ------------------------------------------------------------
|
||||
2010-07-05 08:15:28.171: notice: running ../../zkt-signer -v -v
|
||||
2010-07-05 08:15:28.173: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-07-05 08:15:28.173: debug:
|
||||
2010-07-05 08:15:28.174: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-07-05 08:15:28.174: debug:
|
||||
2010-07-05 08:15:28.174: notice: end of run: 0 errors occured
|
||||
2010-07-05 08:15:58.498: notice: ------------------------------------------------------------
|
||||
2010-07-05 08:15:58.498: notice: running ../../zkt-signer -v -v
|
||||
2010-07-05 08:15:58.501: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-07-05 08:15:58.502: debug:
|
||||
2010-07-05 08:15:58.502: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-07-05 08:15:58.503: debug:
|
||||
2010-07-05 08:15:58.504: notice: end of run: 0 errors occured
|
||||
2010-07-05 08:16:04.892: notice: ------------------------------------------------------------
|
||||
2010-07-05 08:16:04.892: notice: running ../../zkt-signer -f -v -v
|
||||
2010-07-05 08:16:04.894: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-07-05 08:16:04.937: debug:
|
||||
2010-07-05 08:16:04.937: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-07-05 08:16:04.993: debug:
|
||||
2010-07-05 08:16:04.993: notice: end of run: 0 errors occured
|
||||
2010-07-05 08:16:33.557: notice: ------------------------------------------------------------
|
||||
2010-07-05 08:16:33.557: notice: running ../../zkt-signer -f -v -v
|
||||
2010-07-05 08:16:33.559: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-07-05 08:16:33.604: debug:
|
||||
2010-07-05 08:16:33.604: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-07-05 08:16:33.648: debug:
|
||||
2010-07-05 08:16:33.648: notice: end of run: 0 errors occured
|
||||
2010-07-30 01:30:54.873: notice: ------------------------------------------------------------
|
||||
2010-07-30 01:30:54.873: notice: running ../../zkt-signer -v -v
|
||||
2010-07-30 01:30:54.879: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-07-30 01:30:55.411: debug:
|
||||
2010-07-30 01:30:55.411: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-07-30 01:30:55.563: debug:
|
||||
2010-07-30 01:30:55.563: notice: end of run: 0 errors occured
|
||||
2010-08-26 22:52:09.066: notice: ------------------------------------------------------------
|
||||
2010-08-26 22:52:09.066: notice: running ../../zkt-signer -v -v
|
||||
2010-08-26 22:52:09.092: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-08-26 22:52:09.538: debug:
|
||||
2010-08-26 22:52:09.539: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-08-26 22:52:09.704: debug:
|
||||
2010-08-26 22:52:09.704: notice: end of run: 0 errors occured
|
||||
2010-08-26 22:56:02.935: notice: ------------------------------------------------------------
|
||||
2010-08-26 22:56:02.935: notice: running ../../zkt-signer -v -v
|
||||
2010-08-26 22:56:02.937: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-08-26 22:56:02.938: debug:
|
||||
2010-08-26 22:56:02.938: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-08-26 22:56:02.938: debug:
|
||||
2010-08-26 22:56:02.938: notice: end of run: 0 errors occured
|
||||
2010-08-26 23:06:00.453: notice: ------------------------------------------------------------
|
||||
2010-08-26 23:06:00.453: notice: running ../../zkt-signer -v -v
|
||||
2010-08-26 23:06:00.456: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-08-26 23:06:00.593: debug:
|
||||
2010-08-26 23:06:00.593: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-08-26 23:06:00.672: debug:
|
||||
2010-08-26 23:06:00.672: notice: end of run: 0 errors occured
|
||||
2010-08-26 23:11:33.804: notice: ------------------------------------------------------------
|
||||
2010-08-26 23:11:33.805: notice: running ../../zkt-signer -v -v
|
||||
2010-08-26 23:11:33.807: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-08-26 23:11:33.808: debug:
|
||||
2010-08-26 23:11:33.808: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-08-26 23:11:33.809: debug:
|
||||
2010-08-26 23:11:33.809: notice: end of run: 0 errors occured
|
||||
2010-08-26 23:12:51.008: notice: ------------------------------------------------------------
|
||||
2010-08-26 23:12:51.008: notice: running ../../zkt-signer -v -v
|
||||
2010-08-26 23:12:51.010: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-08-26 23:12:51.011: debug:
|
||||
2010-08-26 23:12:51.012: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-08-26 23:12:51.012: debug:
|
||||
2010-08-26 23:12:51.012: notice: end of run: 0 errors occured
|
||||
2010-08-26 23:23:47.879: notice: ------------------------------------------------------------
|
||||
2010-08-26 23:23:47.880: notice: running ../../zkt-signer -v -v
|
||||
2010-08-26 23:23:47.886: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-08-26 23:23:47.886: debug:
|
||||
2010-08-26 23:23:47.886: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-08-26 23:23:47.886: debug:
|
||||
2010-08-26 23:23:47.886: notice: end of run: 0 errors occured
|
||||
2010-08-26 23:50:15.720: notice: ------------------------------------------------------------
|
||||
2010-08-26 23:50:15.720: notice: running ../../zkt-signer -v -v
|
||||
2010-08-26 23:50:15.722: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-08-26 23:50:15.724: debug:
|
||||
2010-08-26 23:50:15.724: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-08-26 23:50:15.725: debug:
|
||||
2010-08-26 23:50:15.725: notice: end of run: 0 errors occured
|
||||
2010-08-26 23:50:55.121: notice: ------------------------------------------------------------
|
||||
2010-08-26 23:50:55.121: notice: running ../../zkt-signer -v -v
|
||||
2010-08-26 23:50:55.123: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-08-26 23:50:55.124: debug:
|
||||
2010-08-26 23:50:55.124: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-08-26 23:50:55.124: debug:
|
||||
2010-08-26 23:50:55.124: notice: end of run: 0 errors occured
|
||||
2010-08-26 23:51:46.603: notice: ------------------------------------------------------------
|
||||
2010-08-26 23:51:46.604: notice: running ../../zkt-signer -v -v
|
||||
2010-08-26 23:51:46.606: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-08-26 23:51:46.719: debug:
|
||||
2010-08-26 23:51:46.719: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-08-26 23:51:46.719: debug:
|
||||
2010-08-26 23:51:46.719: notice: end of run: 0 errors occured
|
||||
2010-08-26 23:54:22.818: notice: ------------------------------------------------------------
|
||||
2010-08-26 23:54:22.819: notice: running ../../zkt-signer -v -v
|
||||
2010-08-26 23:54:22.821: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-08-26 23:54:22.823: debug:
|
||||
2010-08-26 23:54:22.823: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-08-26 23:54:22.825: debug:
|
||||
2010-08-26 23:54:22.825: notice: end of run: 0 errors occured
|
||||
2010-08-26 23:55:00.013: notice: ------------------------------------------------------------
|
||||
2010-08-26 23:55:00.013: notice: running ../../zkt-signer -v -v
|
||||
2010-08-26 23:55:00.017: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-08-26 23:55:00.018: debug:
|
||||
2010-08-26 23:55:00.018: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-08-26 23:55:00.169: debug:
|
||||
2010-08-26 23:55:00.169: notice: end of run: 0 errors occured
|
||||
2010-08-26 23:56:17.462: notice: ------------------------------------------------------------
|
||||
2010-08-26 23:56:17.462: notice: running ../../zkt-signer -v -v
|
||||
2010-08-26 23:56:17.464: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-08-26 23:56:17.465: debug:
|
||||
2010-08-26 23:56:17.465: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-08-26 23:56:17.531: debug:
|
||||
2010-08-26 23:56:17.531: notice: end of run: 0 errors occured
|
||||
2010-08-26 23:57:00.176: notice: ------------------------------------------------------------
|
||||
2010-08-26 23:57:00.176: notice: running ../../zkt-signer -v -v
|
||||
2010-08-26 23:57:00.178: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-08-26 23:57:00.178: debug:
|
||||
2010-08-26 23:57:00.178: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-08-26 23:57:00.179: debug:
|
||||
2010-08-26 23:57:00.179: notice: end of run: 0 errors occured
|
||||
2010-10-21 14:01:35.484: notice: ------------------------------------------------------------
|
||||
2010-10-21 14:01:35.484: notice: running zkt-signer -c dnssec.conf -D .
|
||||
2010-10-21 14:01:35.486: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-10-21 14:01:35.546: debug:
|
||||
2010-10-21 14:01:35.546: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-10-21 14:01:35.794: debug:
|
||||
2010-10-21 14:01:35.794: notice: end of run: 2 errors occured
|
||||
2010-10-21 14:02:09.144: notice: ------------------------------------------------------------
|
||||
2010-10-21 14:02:09.144: notice: running zkt-signer -v -v -c dnssec.conf -D .
|
||||
2010-10-21 14:02:09.146: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-10-21 14:02:09.209: debug:
|
||||
2010-10-21 14:02:09.209: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-10-21 14:02:09.209: debug:
|
||||
2010-10-21 14:02:09.209: notice: end of run: 2 errors occured
|
||||
2010-10-21 14:05:35.986: notice: ------------------------------------------------------------
|
||||
2010-10-21 14:05:35.986: notice: running ../../zkt-signer -v -v
|
||||
2010-10-21 14:05:35.988: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-10-21 14:05:36.170: debug:
|
||||
2010-10-21 14:05:36.170: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-10-21 14:05:36.170: debug:
|
||||
2010-10-21 14:05:36.170: notice: end of run: 0 errors occured
|
||||
2010-10-21 14:30:43.890: notice: ------------------------------------------------------------
|
||||
2010-10-21 14:30:43.890: notice: running ../../zkt-signer -v -v
|
||||
2010-10-21 14:30:43.892: debug: parsing zone "sub.example.net." in dir "./sub.example.net"
|
||||
2010-10-21 14:30:43.892: debug:
|
||||
2010-10-21 14:30:43.892: debug: parsing zone "example.net." in dir "./example.net"
|
||||
2010-10-21 14:30:43.893: debug:
|
||||
2010-10-21 14:30:43.893: notice: end of run: 0 errors occured
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20110125091120
|
||||
;% lifetime=84d
|
||||
example.de. IN DNSKEY 256 3 5 BQEAAAAB13b8+4oBaYaLYdDvH6fwVwDfohlzGdSu5A9nO/wJ1taCB+4T wn3TSAtlttLmzYad5EbBUIn+4CLBKmc4sKn/cw==
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 5 (RSASHA1)
|
||||
Modulus: 13b8+4oBaYaLYdDvH6fwVwDfohlzGdSu5A9nO/wJ1taCB+4Twn3TSAtlttLmzYad5EbBUIn+4CLBKmc4sKn/cw==
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: Hr+/WEVR20WhmLb/zS+1qqrw9YDpgmw2hTb9Qs5wa5el38OEzQV5OvBdfQC/aDj7SW1PPSw0iYvcoVS3ZPZh
|
||||
Prime1: 84w3+p6VYYdrwuju6BrMdISLRla1pPo+synV7D7IR4M=
|
||||
Prime2: 4nsxmxk0VLrAzzVDfxvEcF3uEOPIKDgayiB1YCvJ9VE=
|
||||
Exponent1: XzmWw18psVyeqhhEZygfbffj2N61WpM0OulCViv4upM=
|
||||
Exponent2: Qvo4lPrZBicpnQoC+TTYN2MhzXfIm4IPATGftVC6oFE=
|
||||
Coefficient: 6J4QOm1lunyBgAiluqGKhs9FJs9y1ZQ62Lzgauf6XVA=
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20081116180040
|
||||
;% lifetime=365d
|
||||
example.de. IN DNSKEY 257 3 5 BQEAAAABDOkPawC/tCqSITj6lvzcIPwcMEX+Nvz17GBu85jmigMuvZQU YZBVUmJNNBbCNStlz+Y+1pGg9HbWFvn0tpH/bm4mZPlJmk+WxQhHz7eT m5xhSaSEEzq0uf087tAbaq1yaTpTtA2R7JXIPxt6CuD9Ou5bbYOzrFnB q1VBAYrwB6t/us10+Ab7T6Jvie/W+v4jto1Xx912Z8HHTbU48Mlp1+mU jQ==
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 5 (RSASHA1)
|
||||
Modulus: DOkPawC/tCqSITj6lvzcIPwcMEX+Nvz17GBu85jmigMuvZQUYZBVUmJNNBbCNStlz+Y+1pGg9HbWFvn0tpH/bm4mZPlJmk+WxQhHz7eTm5xhSaSEEzq0uf087tAbaq1yaTpTtA2R7JXIPxt6CuD9Ou5bbYOzrFnBq1VBAYrwB6t/us10+Ab7T6Jvie/W+v4jto1Xx912Z8HHTbU48Mlp1+mUjQ==
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: AcxmOS9ewHH4UTWVHOSEyONodDImWb5DFyMOUzn3FCkdBEnsOAYTO8/noT3PP0uoMK0s7/BlIReEqsyCVcgQVrTbJszoKlwhHT+XO60i3wPJIWF9u8ouFDnGLkbSRpw6L72uRZy9SdSWUWHdlRayK6T3uJGrcsCLIlzaSue1vXjdUobHMVxQ+mPCFNjSgRWOvTxGcsoXPKx5MjrmAUEnLyQuoQ==
|
||||
Prime1: A50KZhIYCkyx48okZHgirDXs0cVYf2OOvLcNKF4AvBBTwoV9+oFfTd+wKy9f+G/FqVBV1s4rv/M7UCpAFJPCqaDkt+EEv5DNnX69RgvwBrHyxQ==
|
||||
Prime2: A5KoV2IkWEM9Djm8pZay/fQpM8coQxVutNDb9G4ADMwpwK5ddGifS38jPlHenUKDxSFtfOZBQbyf7ra/lSttpOqSnr/e6s6HHRn5TYfdR9IXKQ==
|
||||
Exponent1: eWP9FtwMjnnrsAhQlO7Fbko74gKGRVaygSe4Pd+TGM22dHDZCCoc//IBL+s2Dhezy1l8xiOPVbcxzxHMbqrQhPENi7HihDwiR1WfuSaoIfod
|
||||
Exponent2: AweXUxlW7qBg+v2qV5cCZl+gvTBW/1vP7llsoOqbHR69xLklXEV96TlEbKU8hoSnq8ts8qqh4/HFj1d+KRTeHWpseUm0GXdK/k7ZvYfr7KVHUQ==
|
||||
Coefficient: AwVZtbgFX0bAOj9J2p48qYAn3EaIuCvzDYoIE3E/m3NZS8UXQ5MK12AFhulRYpWOgZCIWK9fH0MTvtDFk3I5vyFTMhovDBrSWNn/+TJ47CwrBQ==
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20080914221502
|
||||
;% lifetime=365d
|
||||
example.de. IN DNSKEY 257 3 5 BQEAAAABDV7kFHqVcWLoSAShdlXU5LKUdyU4LlsJGYMr8oIpjEzvwonR mX5pRiEjVhTwx+vx6eWluv6txXVu+F0g2ykmqUQdMfPYWmD9AJOqvc2t CKVSRePqZ+HeIZR+heBnFKr5kWQmB5XOlMdWNRA3y78s/LufVB8hD7r2 60jrVJ0W6wSMGDjN4zQce8rHCe+LNB1GfaIASkMWjdgxNNAsK9bqDM8E uw==
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 5 (RSASHA1)
|
||||
Modulus: DV7kFHqVcWLoSAShdlXU5LKUdyU4LlsJGYMr8oIpjEzvwonRmX5pRiEjVhTwx+vx6eWluv6txXVu+F0g2ykmqUQdMfPYWmD9AJOqvc2tCKVSRePqZ+HeIZR+heBnFKr5kWQmB5XOlMdWNRA3y78s/LufVB8hD7r260jrVJ0W6wSMGDjN4zQce8rHCe+LNB1GfaIASkMWjdgxNNAsK9bqDM8Euw==
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: CxINUgbVqMf0BnMNYq3aL8ucN4fael2ljQYgDCpcTMfqVuRo+Vo6sMEr3C6Bw8MTHWo2jMxdulyS4tsiMQVVjWUArFL/sfFYLwopjOExcneji6noi8n9dzgslNpo3QAdnKwDGUwj+k7CBzCbLSZ5xpt/eaHcN4l1buQ0tcqShthdh7sNHFX1nAqjsLa7xxCiBsliA6LD/QTAAzcbED0Xw7SJWQ==
|
||||
Prime1: A+RY6jx9urFg5GeyRqrAiqqClEzyWgEM4HsJn/oQ38PE6NrPzcG9U95um79u1WwWtXe5xTifInhN40CpxQYH45NFjZEuEvROvkXk5JHV9b5UHw==
|
||||
Prime2: A2949khdV+cKgI2EHmRIu7PJUFkBgrMXacwVpGdaN41NpJYFRYW8qoPmKRrw/Fji7GZj0rrro51XT7JNDbC44dX/bGdNa/eWvslPJGfCR4Gb5Q==
|
||||
Exponent1: rVHNFnlV2HXIOzi9+2Hit8m7bNXrVXA/DJ3lGCzDL2PzpvQcrL6mMXzaYznP9XaSgyR9M8u+Tdwqq11lHsnWhNLyWKTyAlO5WP3syQD3+0Jp
|
||||
Exponent2: ArQCCQS8lPgDvu7LI3q5tanr2nmM2uMzPNud9EPSqAql8iEIgOZDLDsMDZd9QHm2Dicjc2UifTcJgQlc3OACSVYkkxjvHKO7t03KNoZkhceTTQ==
|
||||
Coefficient: GUOOUFWtz0iCPZx1ljdxpP3T4hW7Jux1zcfV6PwX+Nx+8KcawXFfNxjsC1+Sla9Txv02Kgqg9Mh3mCNGynimcbkmmOcfyozKOttAD1sheFK0
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20101127093934
|
||||
;% lifetime=63d
|
||||
example.de. IN DNSKEY 256 3 5 BQEAAAABw62oxcUQ8mF4T6zH+tAkM0FU3nXJ4sgnBSUa884gZL2AlG+t 7FpwrRm/Hish/hxVRzmM8q2srgLHBYAk12VkMQ==
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 5 (RSASHA1)
|
||||
Modulus: w62oxcUQ8mF4T6zH+tAkM0FU3nXJ4sgnBSUa884gZL2AlG+t7FpwrRm/Hish/hxVRzmM8q2srgLHBYAk12VkMQ==
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: IwUfBuvY5VY30HNbiboZAUkgEkSiFAj86peg2ue+PhllmtSP+Vxl7bguyEq0JJgk8AcQB0fxD9b8VdkgksSwgQ==
|
||||
Prime1: 54rg6aJKRFWczUKRDwD0/aRC+VKc6gJAtw3RrAnW/Nc=
|
||||
Prime2: 2Fj7RLozuJFUHRkDTFIQWrPEInCGmrIPU+tLPH6vPjc=
|
||||
Exponent1: gwVUTriIA6KGdAqT+sX/5cpwaIC0v5Nnl70WXoOkiOs=
|
||||
Exponent2: RI+e2Q3LGyTFTRf64HiGzl67T84jor3EM+1LTugfpSs=
|
||||
Coefficient: CNfuRUw+kKfO99T09DeD1y4N7QwyGG03NfazSa4GvPU=
|
||||
|
|
@ -1,39 +0,0 @@
|
|||
;
|
||||
; !!! Don't edit this file by hand.
|
||||
; !!! It will be generated by zkt-signer.
|
||||
;
|
||||
; Last generation time Jan 25 2011 19:39:31
|
||||
;
|
||||
|
||||
; *** List of Key Signing Keys ***
|
||||
; example.de. tag=47280 algo=RSASHA1 generated Jul 05 2010 09:43:02
|
||||
example.de. 14400 IN DNSKEY 257 3 5 (
|
||||
BQEAAAABDV7kFHqVcWLoSAShdlXU5LKUdyU4LlsJGYMr8oIpjEzvwonR
|
||||
mX5pRiEjVhTwx+vx6eWluv6txXVu+F0g2ykmqUQdMfPYWmD9AJOqvc2t
|
||||
CKVSRePqZ+HeIZR+heBnFKr5kWQmB5XOlMdWNRA3y78s/LufVB8hD7r2
|
||||
60jrVJ0W6wSMGDjN4zQce8rHCe+LNB1GfaIASkMWjdgxNNAsK9bqDM8E
|
||||
uw==
|
||||
) ; key id = 47280
|
||||
|
||||
; example.de. tag=37983 algo=RSASHA1 generated Jul 05 2010 09:43:02
|
||||
example.de. 14400 IN DNSKEY 257 3 5 (
|
||||
BQEAAAABDOkPawC/tCqSITj6lvzcIPwcMEX+Nvz17GBu85jmigMuvZQU
|
||||
YZBVUmJNNBbCNStlz+Y+1pGg9HbWFvn0tpH/bm4mZPlJmk+WxQhHz7eT
|
||||
m5xhSaSEEzq0uf087tAbaq1yaTpTtA2R7JXIPxt6CuD9Ou5bbYOzrFnB
|
||||
q1VBAYrwB6t/us10+Ab7T6Jvie/W+v4jto1Xx912Z8HHTbU48Mlp1+mU
|
||||
jQ==
|
||||
) ; key id = 37983
|
||||
|
||||
; *** List of Zone Signing Keys ***
|
||||
; example.de. tag=60407 algo=RSASHA1 generated Nov 27 2010 19:46:33
|
||||
example.de. 14400 IN DNSKEY 256 3 5 (
|
||||
BQEAAAABw62oxcUQ8mF4T6zH+tAkM0FU3nXJ4sgnBSUa884gZL2AlG+t
|
||||
7FpwrRm/Hish/hxVRzmM8q2srgLHBYAk12VkMQ==
|
||||
) ; key id = 60407
|
||||
|
||||
; example.de. tag=25598 algo=RSASHA1 generated Jan 25 2011 10:11:20
|
||||
example.de. 14400 IN DNSKEY 256 3 5 (
|
||||
BQEAAAAB13b8+4oBaYaLYdDvH6fwVwDfohlzGdSu5A9nO/wJ1taCB+4T
|
||||
wn3TSAtlttLmzYad5EbBUIn+4CLBKmc4sKn/cw==
|
||||
) ; key id = 25598
|
||||
|
||||
|
|
@ -1,4 +0,0 @@
|
|||
example.de. IN DS 37983 5 1 635B486D53D19B16BC4A87366BC2D5626978F4B9
|
||||
example.de. IN DS 37983 5 2 5B8412FE443D8F4F77AC4C89FF12289DA88998D864EC68E3E5A4EE2C B192F9DC
|
||||
example.de. IN DS 47280 5 1 149C886C8175B220A964D4293EB4FCFAC1650974
|
||||
example.de. IN DS 47280 5 2 466E738B6913F7081DE5E17FC3567771618AB1D6CB0A333270A4AC24 7DB14DD0
|
||||
|
|
@ -1,19 +0,0 @@
|
|||
$ORIGIN .
|
||||
example.de 7200 IN DNSKEY 257 3 5 (
|
||||
BQEAAAABDOkPawC/tCqSITj6lvzcIPwcMEX+
|
||||
Nvz17GBu85jmigMuvZQUYZBVUmJNNBbCNStl
|
||||
z+Y+1pGg9HbWFvn0tpH/bm4mZPlJmk+WxQhH
|
||||
z7eTm5xhSaSEEzq0uf087tAbaq1yaTpTtA2R
|
||||
7JXIPxt6CuD9Ou5bbYOzrFnBq1VBAYrwB6t/
|
||||
us10+Ab7T6Jvie/W+v4jto1Xx912Z8HHTbU4
|
||||
8Mlp1+mUjQ==
|
||||
) ; key id = 37983
|
||||
7200 IN DNSKEY 257 3 5 (
|
||||
BQEAAAABDV7kFHqVcWLoSAShdlXU5LKUdyU4
|
||||
LlsJGYMr8oIpjEzvwonRmX5pRiEjVhTwx+vx
|
||||
6eWluv6txXVu+F0g2ykmqUQdMfPYWmD9AJOq
|
||||
vc2tCKVSRePqZ+HeIZR+heBnFKr5kWQmB5XO
|
||||
lMdWNRA3y78s/LufVB8hD7r260jrVJ0W6wSM
|
||||
GDjN4zQce8rHCe+LNB1GfaIASkMWjdgxNNAs
|
||||
K9bqDM8Euw==
|
||||
) ; key id = 47280
|
||||
|
|
@ -1,7 +0,0 @@
|
|||
; KSK rollover phase1 (new key generated but this is alread the old one)
|
||||
sub.example.de. 14400 IN DNSKEY 257 3 5 (
|
||||
BQEAAAABzRcWJYuBn9eY8u4x+04jkYmSmfRaGuNc4soput6Fo2/HViu1
|
||||
1Jo2uMnp4Z4MeGzti4IGsL2Lp5vC66qXeX0Qqk+aIJBQUyHCF1nPmPad
|
||||
2hDVFpD4Lp/uArmHaaLxQ4px6LEe0PMG1W/a/gJWNxuiTmkSN5c9vXsQ
|
||||
m3SuRnb0ef0=
|
||||
) ; key id = 38331
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20101127093933
|
||||
;% lifetime=3d
|
||||
sub.example.de. IN DNSKEY 256 3 5 BQEAAAAB5tuyJuCMHTySqvnPpVSbFcnFK6jI/BG3Va5Yu0ou7jPArylc mziNb9AIJ2PBaVcXbeH6h9YWd9MLCLKPZqRLKQ==
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 5 (RSASHA1)
|
||||
Modulus: 5tuyJuCMHTySqvnPpVSbFcnFK6jI/BG3Va5Yu0ou7jPArylcmziNb9AIJ2PBaVcXbeH6h9YWd9MLCLKPZqRLKQ==
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: JzR1JHrF/sD4IW5yUk+u1Kk3EuBcKPbD8wqOMseG34SyEm1jPU+o2QlTA2DPw49ApfKrkq+ikDZ7+mRwRGOHAQ==
|
||||
Prime1: 9OdVjN/tX8KeuG8oURXKri8YD04kz07isqeYTYyksfE=
|
||||
Prime2: 8VFyYFkvnx5UuYdOTuoIIJcQqK0HeC+JwB1wAyRm9Lk=
|
||||
Exponent1: ATIpC4/KM7AKHLlt3vvxyyov3pPBnCwF9NC4L4gpNEE=
|
||||
Exponent2: 8UV1SqMZEk9tI8NTvRa2Z6xRB0b7D2MNnedSZqOXi/E=
|
||||
Coefficient: mUOK9cs0xozwdcUZPkP+FDoxJvfN6eeidsFqya3JLOo=
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20110125183931
|
||||
;% lifetime=7d
|
||||
sub.example.de. IN DNSKEY 257 3 5 BQEAAAABocb52XnOJzaKKv90SFZxTddP7OuzI/qaeOqptm7BH3QKGTBj ZmgfJ6J2uNXamzVEUGiAV5yLvPbxSAUK/R7HWP22ENqRxouZrQVUYfMC pVS69kTGagTnMmywpg5LtCic9+18YRX2NhkxNvUpBjlTn7BbjXW36yy5 sA1Uq+Rg2cU=
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 5 (RSASHA1)
|
||||
Modulus: ocb52XnOJzaKKv90SFZxTddP7OuzI/qaeOqptm7BH3QKGTBjZmgfJ6J2uNXamzVEUGiAV5yLvPbxSAUK/R7HWP22ENqRxouZrQVUYfMCpVS69kTGagTnMmywpg5LtCic9+18YRX2NhkxNvUpBjlTn7BbjXW36yy5sA1Uq+Rg2cU=
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: JpNUVc04LC+jHSd/SN4bbbUXotjoQMNxsR0OmiGAQqOdWL6NWZ2XRr1dYS0NWy6lLxPCtA5MhnS5TgY633Vfd2KM8ywkNy3Dwtd/ynHRqv6poAhSoSZtYds/RrPATwMMzKmuwXoH9YAG4IHhG9y4mUA9cVB84xT/5ZVxoaatYgE=
|
||||
Prime1: 1hrTq3BjlThxhlNym2qSx5Kop2rtn6J3LSM7wlQ8vd2vR9lNuj8TrM8yig3S1tRh4RSKLWtOgb3eBo26nrp+EQ==
|
||||
Prime2: wW7mdWIEe1UkZVFnH2J2If5D5v1mn0o8umik+tE3aQJun9WOVjbZ/PjwlaMM+nFAID08Plj25ec0z8hu8cV8dQ==
|
||||
Exponent1: iVUvqW8WSh0JJt2Cs6Eokp6fhJveVPMTmTtWWkKtYFnQx/peBxb55x+ULMQvHG3Iz06Y445k61629mCvyB9qwQ==
|
||||
Exponent2: Ewn17+1cExPMS+ZITVszVdouSCvnteVj7V/AL8C0iSK0x7XlBx3F8D9vNfYWL+7WOjF5t+v0dmBM+J0TKLUZzQ==
|
||||
Coefficient: AhCRWPVu5lQcfR94r8G5sQik3ZmZf1uJbO2mf+24yHQA0qjzYiEo42jCwXSDA3JtBwAbTwukmmTn4gOWHex7JQ==
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20100826211144
|
||||
;% lifetime=7d
|
||||
sub.example.de. IN DNSKEY 257 3 5 BQEAAAABzRcWJYuBn9eY8u4x+04jkYmSmfRaGuNc4soput6Fo2/HViu1 1Jo2uMnp4Z4MeGzti4IGsL2Lp5vC66qXeX0Qqk+aIJBQUyHCF1nPmPad 2hDVFpD4Lp/uArmHaaLxQ4px6LEe0PMG1W/a/gJWNxuiTmkSN5c9vXsQ m3SuRnb0ef0=
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 5 (RSASHA1)
|
||||
Modulus: zRcWJYuBn9eY8u4x+04jkYmSmfRaGuNc4soput6Fo2/HViu11Jo2uMnp4Z4MeGzti4IGsL2Lp5vC66qXeX0Qqk+aIJBQUyHCF1nPmPad2hDVFpD4Lp/uArmHaaLxQ4px6LEe0PMG1W/a/gJWNxuiTmkSN5c9vXsQm3SuRnb0ef0=
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: YcpriBuIcizNJGNwVPxNTYDgzz4nQsZ2z7F5fr5BmfC9Ukx7Mdl8wzS/8dikD3FhTqEbDdANf5L/LuPiE0XvvFzMEweRtoSQnYDlnvpYQPGcFcTXlbY1Jn6h3WvVyfLWMWK0/2lsLtHzRhToyI1WyO6wFqrun9e+HvHb71SwP6k=
|
||||
Prime1: 9aHh1J2wdRibYZI01fQqegxMuZn5+NlvxWxO2Bzwbm4e68cMQjVeyn7N0j46hE7kv+z07422AgXq1kLllqIpNw==
|
||||
Prime2: 1b8i4culx54km/hid+U9qLFcorXX9e2QF2LFxd5/+YYBBILp7RGk9sD/PWTCPcYZbviPzkRhq+3ignTfwdzAaw==
|
||||
Exponent1: 2fQGWETsC1OVxzQamORV4JQzBB8haAYNHaCcvgidlQgQFQA2pR4PNaLj77DUHBOrjb2pKjsCS7xumwVu1F8T2w==
|
||||
Exponent2: EX6aW8lr4Fizn0QwEumQAYnRv7Z32Tfmnr/s6gHPVxPK7spfiPhK0Lb3Q04OfFkJdHNaG9YMpqmNI8ZW/PyJsw==
|
||||
Coefficient: YvQ1SQqRz/y9ApJSUmswljwbA6NGxS5Mh9ZA8Ui1jNPYClQ6Ncn2A4FatnLBfyLaalCLzR3rf22LoNvwc9g8rg==
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20101127101703
|
||||
;% lifetime=7d
|
||||
sub.example.de. IN DNSKEY 257 3 5 BQEAAAAB2CMCmaITzL7L6UmI0Y+u16LiyINgkYc3dxYunDYWK0FEXGa5 L7ss8jepJnBM6KD/rekwqb5wgso/5VnSprhUUnQqec6ESuJ/9/ThI6i7 zD6AnwdtXagTOaTRqWhUEcjgMIG4oJK/Pb5mZAlXvzPqmRkyeStRw0cU AEWQvdtuDcc=
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 5 (RSASHA1)
|
||||
Modulus: 2CMCmaITzL7L6UmI0Y+u16LiyINgkYc3dxYunDYWK0FEXGa5L7ss8jepJnBM6KD/rekwqb5wgso/5VnSprhUUnQqec6ESuJ/9/ThI6i7zD6AnwdtXagTOaTRqWhUEcjgMIG4oJK/Pb5mZAlXvzPqmRkyeStRw0cUAEWQvdtuDcc=
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: BTyLOYpzVpf3iu0C8TsgWOjkBxZYFrHY/A1FOznBnvmYoGo/R3VEoeiZ8rNeizi5z123O37vROe8lz78HGacZbAdOJN2641uSsIN291KQk5phA9udaR6LT+mc0pIb9jg++M0F3Hf5i5PYEu/er/JGSHFT6/h9NpnbyqcXYjV6yE=
|
||||
Prime1: 8+mFlmHUdJ730AoP0NGVCaQXmU0YRTKsbR/6nQLOerKE9XBfedI9yqBR3c/jxko6dt8f6d/vhizdeTfmQU/xJQ==
|
||||
Prime2: 4tka/vWR5lFqC3IGnKH0Dudiwurzz/dDoPwc1WWdpKWdKBss3D+aFFr61NFTgJCT2vw7/5EJY0RGX7JVMKQdew==
|
||||
Exponent1: ZKJzEF60uVnkVEg+IyIS7mBmUVL91FmieU1ZOXSeV683uCdVKSTSdPr/+l18R7IgjOnCOs9ityOfGb0eVrqHKQ==
|
||||
Exponent2: af/TPglQaRZJKRwT8Jh6PbuBtK1RpMmudpVF/M+t7VSCpkhIEa+MPQP3f/9POSHT/Th8oe7PE/JLhqEllQTgsQ==
|
||||
Coefficient: PlboG/Rm7dd/QQirRpQ/fZZdFPjNI0J1VjfRst+Qb/yuB2m81CU6GNwDyJujX7L5JQpfQGlqIRvk9jw2cpRBJQ==
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20110125091120
|
||||
;% lifetime=3d
|
||||
sub.example.de. IN DNSKEY 256 3 5 BQEAAAAB1+QMKtDQA7dd2FA5IMVv5Y/VQa1ueCB4ZgDqvDUkdmQ2STLE DwQuCoL26XId1SjEPQS47v3GBqTkSb0M/mSIsw==
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 5 (RSASHA1)
|
||||
Modulus: 1+QMKtDQA7dd2FA5IMVv5Y/VQa1ueCB4ZgDqvDUkdmQ2STLEDwQuCoL26XId1SjEPQS47v3GBqTkSb0M/mSIsw==
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: Kye03nJBn261AzC2UQAIVVOz0IUDAmIO/LqThB87QJc9xFPk+KQZDvn7+XaLReYSUZrgDadZozVyGCBwmTbKEQ==
|
||||
Prime1: 8c3ijRfD1wTzd2CKDyO9Zzsq0r/DvH/30BL7QzB1/7s=
|
||||
Prime2: 5JC0mXeSA3vDweMKht4bH44IXBPLuq9EGTVWDLolH2k=
|
||||
Exponent1: jCN5Qm3qprCbs+lLPNJ1fIWWD6Zzg6tObVCputLFRqE=
|
||||
Exponent2: ooEJXApdOWOj2g9rLuZ0jCEkARFtLd/fnvlEZfWOJFk=
|
||||
Coefficient: GZIo2y2pmmjsXCZaHPzd6CGGkXRq1kOw2OCZ1NUcPWY=
|
||||
|
|
@ -1,45 +0,0 @@
|
|||
;
|
||||
; !!! Don't edit this file by hand.
|
||||
; !!! It will be generated by zkt-signer.
|
||||
;
|
||||
; Last generation time Jan 25 2011 19:39:31
|
||||
;
|
||||
|
||||
; *** List of Key Signing Keys ***
|
||||
; sub.example.de. tag=38331 algo=RSASHA1 generated Aug 26 2010 23:11:44
|
||||
sub.example.de. 14400 IN DNSKEY 257 3 5 (
|
||||
BQEAAAABzRcWJYuBn9eY8u4x+04jkYmSmfRaGuNc4soput6Fo2/HViu1
|
||||
1Jo2uMnp4Z4MeGzti4IGsL2Lp5vC66qXeX0Qqk+aIJBQUyHCF1nPmPad
|
||||
2hDVFpD4Lp/uArmHaaLxQ4px6LEe0PMG1W/a/gJWNxuiTmkSN5c9vXsQ
|
||||
m3SuRnb0ef0=
|
||||
) ; key id = 38331
|
||||
|
||||
; sub.example.de. tag=51846 algo=RSASHA1 generated Nov 27 2010 11:17:03
|
||||
sub.example.de. 14400 IN DNSKEY 257 3 5 (
|
||||
BQEAAAAB2CMCmaITzL7L6UmI0Y+u16LiyINgkYc3dxYunDYWK0FEXGa5
|
||||
L7ss8jepJnBM6KD/rekwqb5wgso/5VnSprhUUnQqec6ESuJ/9/ThI6i7
|
||||
zD6AnwdtXagTOaTRqWhUEcjgMIG4oJK/Pb5mZAlXvzPqmRkyeStRw0cU
|
||||
AEWQvdtuDcc=
|
||||
) ; key id = 51846
|
||||
|
||||
; sub.example.de. tag=32679 algo=RSASHA1 generated Jan 25 2011 19:39:31
|
||||
sub.example.de. 14400 IN DNSKEY 257 3 5 (
|
||||
BQEAAAABocb52XnOJzaKKv90SFZxTddP7OuzI/qaeOqptm7BH3QKGTBj
|
||||
ZmgfJ6J2uNXamzVEUGiAV5yLvPbxSAUK/R7HWP22ENqRxouZrQVUYfMC
|
||||
pVS69kTGagTnMmywpg5LtCic9+18YRX2NhkxNvUpBjlTn7BbjXW36yy5
|
||||
sA1Uq+Rg2cU=
|
||||
) ; key id = 32679
|
||||
|
||||
; *** List of Zone Signing Keys ***
|
||||
; sub.example.de. tag=27647 algo=RSASHA1 generated Jan 25 2011 10:11:20
|
||||
sub.example.de. 14400 IN DNSKEY 256 3 5 (
|
||||
BQEAAAAB5tuyJuCMHTySqvnPpVSbFcnFK6jI/BG3Va5Yu0ou7jPArylc
|
||||
mziNb9AIJ2PBaVcXbeH6h9YWd9MLCLKPZqRLKQ==
|
||||
) ; key id = 27647
|
||||
|
||||
; sub.example.de. tag=55550 algo=RSASHA1 generated Jan 25 2011 10:11:20
|
||||
sub.example.de. 14400 IN DNSKEY 256 3 5 (
|
||||
BQEAAAAB1+QMKtDQA7dd2FA5IMVv5Y/VQa1ueCB4ZgDqvDUkdmQ2STLE
|
||||
DwQuCoL26XId1SjEPQS47v3GBqTkSb0M/mSIsw==
|
||||
) ; key id = 55550
|
||||
|
||||
|
|
@ -1,6 +0,0 @@
|
|||
sub.example.de. IN DS 32679 5 1 B2B115076F5BC2F2864D8ED1D63279193E5E7999
|
||||
sub.example.de. IN DS 32679 5 2 71B3896274A524028F131983D780C12CB38EA40E435815E9CC301749 26BFD367
|
||||
sub.example.de. IN DS 38331 5 1 8F7E90EE2686DAE4D31CEE40142AD6A25670B0A0
|
||||
sub.example.de. IN DS 38331 5 2 7B791220D03926DC6D3531CD155EF1E2AB202CE5955DF61079BEDD48 67400707
|
||||
sub.example.de. IN DS 51846 5 1 F0B3607F13FFE0C5AEF2ED24978FC8D42B391361
|
||||
sub.example.de. IN DS 51846 5 2 B067543FEAC9F203E9508672D802DEFD9F8AFF6CDBCC298B25C2CCED EDC813D8
|
||||
|
|
@ -1,22 +0,0 @@
|
|||
$ORIGIN .
|
||||
sub.example.de 7200 IN DNSKEY 257 3 5 (
|
||||
BQEAAAABocb52XnOJzaKKv90SFZxTddP7Ouz
|
||||
I/qaeOqptm7BH3QKGTBjZmgfJ6J2uNXamzVE
|
||||
UGiAV5yLvPbxSAUK/R7HWP22ENqRxouZrQVU
|
||||
YfMCpVS69kTGagTnMmywpg5LtCic9+18YRX2
|
||||
NhkxNvUpBjlTn7BbjXW36yy5sA1Uq+Rg2cU=
|
||||
) ; key id = 32679
|
||||
7200 IN DNSKEY 257 3 5 (
|
||||
BQEAAAABzRcWJYuBn9eY8u4x+04jkYmSmfRa
|
||||
GuNc4soput6Fo2/HViu11Jo2uMnp4Z4MeGzt
|
||||
i4IGsL2Lp5vC66qXeX0Qqk+aIJBQUyHCF1nP
|
||||
mPad2hDVFpD4Lp/uArmHaaLxQ4px6LEe0PMG
|
||||
1W/a/gJWNxuiTmkSN5c9vXsQm3SuRnb0ef0=
|
||||
) ; key id = 38331
|
||||
7200 IN DNSKEY 257 3 5 (
|
||||
BQEAAAAB2CMCmaITzL7L6UmI0Y+u16LiyINg
|
||||
kYc3dxYunDYWK0FEXGa5L7ss8jepJnBM6KD/
|
||||
rekwqb5wgso/5VnSprhUUnQqec6ESuJ/9/Th
|
||||
I6i7zD6AnwdtXagTOaTRqWhUEcjgMIG4oJK/
|
||||
Pb5mZAlXvzPqmRkyeStRw0cUAEWQvdtuDcc=
|
||||
) ; key id = 51846
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20100311234526
|
||||
;% lifetime=7d
|
||||
sub.example.de. IN DNSKEY 257 3 5 BQEAAAAB5pX0X0XUdIwL0/k/VoAsC33UZ9xk/U2v5KKBFZKM3TqQzL13 EcucIdpDsazbz3slOHbHXsZYjFtJws+ZZKq/53AygNiRvjTeQskYY1W9 6dN+3keQdlwgIGQL0HnjBSksm42T2HXFlQfi/3YHlun1MzHzd78xpeuZ lvW8DPh+/CM=
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 5 (RSASHA1)
|
||||
Modulus: 5pX0X0XUdIwL0/k/VoAsC33UZ9xk/U2v5KKBFZKM3TqQzL13EcucIdpDsazbz3slOHbHXsZYjFtJws+ZZKq/53AygNiRvjTeQskYY1W96dN+3keQdlwgIGQL0HnjBSksm42T2HXFlQfi/3YHlun1MzHzd78xpeuZlvW8DPh+/CM=
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: fWmnzNBw5Pz/Zk7x3dJwg36L+myF19pas+uYon6bL1WuIYGSu5TnZbmPemkyo2XrWedlv5+sXdpY5H2axgpmKtDyBCmjCSL00ohcjQlFNmp5U4YPU1cvlfnCCCUMRVzzTwp1iZ39Y1rGKTALITOazux161s1V+C8xErGnMYXjhE=
|
||||
Prime1: +H/1W3Qgd6CCwi3cwrtfWzhosSjbb7+6WVo7bX2Rn6EBWyo07Y7WpIGAEdkBGsPn9Ow8JANPjzNzqrcF4LvUtw==
|
||||
Prime2: 7YuVHcg7Fa4MysfTgaLKupaCVKkJxQ3SDVp2mVABgu9GkKzKgPRlwznLANgKC2kWudUqKG0+jO97GxV6Jhff9Q==
|
||||
Exponent1: sCr44sRCtIX9o2izqQZAca6koln9//yloHgwXyQepvJGeuxWsfpSGmUf5gJlvaovrTdN4fpy5mA0b4vZnQRsBw==
|
||||
Exponent2: k3Q0J6VvHwFresOiQ8Ekzw/AHXgGY+X0+MJWJ+6IEy2dCQWOHPhguXyAKP8B8ootNijjM2Bzb76eeT0vz3mKXQ==
|
||||
Coefficient: A9rqRcjvB0xOPfSUAQDclV8JQPq+xHBOXIpOm5xDtrzQpjv/6uams+bgNeV7m9CPi5jyjWaM5XGwUQv+3itRyQ==
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20100224232104
|
||||
;% lifetime=5d
|
||||
sub.example.de. IN DNSKEY 257 3 5 BQEAAAABw7VUqnhpsZkrjxhFtr3gUk2qCcs8utrOFwwsMgxQwzcMoJfe S9Ctq4Rp4M8s20tSq3rXzt1h8LxjsSLqbdolqgWcmToSGo+IZikT/87c vsUqzKgCQx84n2Il+//AvLPE0I00mGeOK4OR3yLqxrP/ghYXqydlUvgX HLeDoqHQAFM=
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 5 (RSASHA1)
|
||||
Modulus: w7VUqnhpsZkrjxhFtr3gUk2qCcs8utrOFwwsMgxQwzcMoJfeS9Ctq4Rp4M8s20tSq3rXzt1h8LxjsSLqbdolqgWcmToSGo+IZikT/87cvsUqzKgCQx84n2Il+//AvLPE0I00mGeOK4OR3yLqxrP/ghYXqydlUvgXHLeDoqHQAFM=
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: uoruJIZElyAQA+KeL5wBYD8hdNbr9/By0IHg/cPVZd6526ahZpWob5ucps4xjq02rgLl/i0FvG+o/iJJKQ072Wvp4LoSzFpLKRQPQhrC8tf2Zqaup03gDlaMSe+mav59pisU/yRi42xkLdFCq9qAqOolhMYH/5rTTIQjLGm4N+E=
|
||||
Prime1: 6WHxgLrUdEcx9ByQvaC1+POsQpA77D9kAqrgR2iPXlmlBsp6JD/lImNCZCUcnt1TRJWEDmMoP3U1diWvvV69MQ==
|
||||
Prime2: 1qy3KTqZNxlxGOJ3GvtUT9AGvZrKCNDDvPYGW6UT1aMCaR7rVKOjuxsdTZGBgVQMSynTVhrsirOsUodhYfskww==
|
||||
Exponent1: gJeuTs2r2TORC6JlxWb7cWyKpTwlAiVZPO8V1bHwT9XoT5upILso6ozh8IB+o2SdxhxNSx0gXmnU9xPk58SJMQ==
|
||||
Exponent2: qT/gYLKfcgWDpIQ1/ZSaCNqeBuyzUVpR1+HTySxFSUD9+yu7Ra07/E+N5EFlfW4WshA762j1Ums8GtKNNZ3nKw==
|
||||
Coefficient: SwfLMVH9qp/SuXcmnOsYQd0kF9JcYdVyi3HiP3EvI/G97sKT2P/RXVi1hSPQ1AocBX6Fwke2FYQpFGyV0/IuwQ==
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20100302100015
|
||||
;% lifetime=5d
|
||||
sub.example.de. IN DNSKEY 257 3 5 BQEAAAAB5KlPbV06agsuPzuijxhIDwNpKC5mGcW/BHnXTIckGoTH8kyQ Q2X5wg3SVqZS5AhF1sJ63dRlEUmr6crC3oIb7oZkgaI6j0oBRMrX63wo 9URebgSCBVBllTo74PhCUlA9taSEiThhzNScje7lk34yU0JSAfxyEiwq c3x8BzbIorM=
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 5 (RSASHA1)
|
||||
Modulus: 5KlPbV06agsuPzuijxhIDwNpKC5mGcW/BHnXTIckGoTH8kyQQ2X5wg3SVqZS5AhF1sJ63dRlEUmr6crC3oIb7oZkgaI6j0oBRMrX63wo9URebgSCBVBllTo74PhCUlA9taSEiThhzNScje7lk34yU0JSAfxyEiwqc3x8BzbIorM=
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: y+rt5sGw902oNDr4JAP2+erGfuYpp1g3UavEEPplKcyFZNg21fMasVCIyerS5ORCr/ktaNP9ZCuOkv/Ob9CY6hbbMMFKHIKGtBb7eu+et+fbbr71fdxyqHlcpqfAiRjsqYLuLw1r93Odw1HyCRpiIVR3Esiq7xTTsbd6v+mjqHE=
|
||||
Prime1: 9deZ3ccGM9abtuCR/vGI2v8dOR3WwzhClE+kmRKhB+++ON5hvg1Y+cJc60FpWLHTxKs96t4axX/6ijiRWZpyKw==
|
||||
Prime2: 7hv6lVRo8UCdt/q4n9OKbDnPu8z7GokPSXcqT5O8W7p/O7Yvuy0YMRbL8CTJw2A4IP202bScW5Lg5EWdPUa1mQ==
|
||||
Exponent1: TM/bBQFxZfgGdjnJ58qGE9e5GNuqjNgT7HacbqTtnvHKQmRTp6Z+es8qV7U6ise0Glyz/zwB9BuYynUU+XKpsw==
|
||||
Exponent2: MHiLBFWwhaeg21jfCAqblY6elrqmLWiq6qkk8mRPTHtyaCkr1fa4/4u6q54XiyIBQxLKUf3prhjzq+o+hagIYQ==
|
||||
Coefficient: fi1lTsYNS1ka3RHT8SxGcwur8oRZLPAaLu8UYFxy9bfAInYkUg/jnR3q3i5BcKcr4+UL6Pp9iPzl1AfMQj//fg==
|
||||
|
|
@ -1,7 +0,0 @@
|
|||
; KSK rollover phase1 (new key generated but this is alread the old one)
|
||||
sub.example.de. 14400 IN DNSKEY 257 3 5 (
|
||||
BQEAAAABzRcWJYuBn9eY8u4x+04jkYmSmfRaGuNc4soput6Fo2/HViu1
|
||||
1Jo2uMnp4Z4MeGzti4IGsL2Lp5vC66qXeX0Qqk+aIJBQUyHCF1nPmPad
|
||||
2hDVFpD4Lp/uArmHaaLxQ4px6LEe0PMG1W/a/gJWNxuiTmkSN5c9vXsQ
|
||||
m3SuRnb0ef0=
|
||||
) ; key id = 38331
|
||||
|
|
@ -1,131 +0,0 @@
|
|||
; File written on Tue Jan 25 19:39:31 2011
|
||||
; dnssec_signzone version 9.7.2-P2
|
||||
sub.example.de. 7200 IN SOA ns1.example.de. hostmaster.example.de. (
|
||||
2011012503 ; serial
|
||||
86400 ; refresh (1 day)
|
||||
1800 ; retry (30 minutes)
|
||||
1209600 ; expire (2 weeks)
|
||||
7200 ; minimum (2 hours)
|
||||
)
|
||||
7200 RRSIG SOA 5 3 7200 20110126173931 (
|
||||
20110125173931 27647 sub.example.de.
|
||||
wbTvANOCw3T6BjH3ibeVrgAG2WJPmX09LZmX
|
||||
P7xtuj9F1Kaj+EpXvQv37SaA8ldr0Ge25q3+
|
||||
KB0+dtpmxel7NQ== )
|
||||
7200 NS ns1.example.de.
|
||||
7200 RRSIG NS 5 3 7200 20110126173931 (
|
||||
20110125173931 27647 sub.example.de.
|
||||
hvliLSJ7kw/6nZfrDHJ3nnvW3RjiYZMbYASL
|
||||
IdKLGsytfU6zaypMXGiwxDo/k+BafY7V4xAM
|
||||
RGxgMNRthCqOaQ== )
|
||||
7200 NSEC a.sub.example.de. NS SOA RRSIG NSEC DNSKEY
|
||||
7200 RRSIG NSEC 5 3 7200 20110126173931 (
|
||||
20110125173931 27647 sub.example.de.
|
||||
fCX2CjTIm3XyOXhPZni/e21bTKmdZlW9keBX
|
||||
pb9hEYY5/D3UJWzkVNpVeQ0e1n3QQvwklLda
|
||||
ezrP/SfZDzIwbg== )
|
||||
14400 DNSKEY 256 3 5 (
|
||||
BQEAAAAB1+QMKtDQA7dd2FA5IMVv5Y/VQa1u
|
||||
eCB4ZgDqvDUkdmQ2STLEDwQuCoL26XId1SjE
|
||||
PQS47v3GBqTkSb0M/mSIsw==
|
||||
) ; key id = 55550
|
||||
14400 DNSKEY 256 3 5 (
|
||||
BQEAAAAB5tuyJuCMHTySqvnPpVSbFcnFK6jI
|
||||
/BG3Va5Yu0ou7jPArylcmziNb9AIJ2PBaVcX
|
||||
beH6h9YWd9MLCLKPZqRLKQ==
|
||||
) ; key id = 27647
|
||||
14400 DNSKEY 257 3 5 (
|
||||
BQEAAAABocb52XnOJzaKKv90SFZxTddP7Ouz
|
||||
I/qaeOqptm7BH3QKGTBjZmgfJ6J2uNXamzVE
|
||||
UGiAV5yLvPbxSAUK/R7HWP22ENqRxouZrQVU
|
||||
YfMCpVS69kTGagTnMmywpg5LtCic9+18YRX2
|
||||
NhkxNvUpBjlTn7BbjXW36yy5sA1Uq+Rg2cU=
|
||||
) ; key id = 32679
|
||||
14400 DNSKEY 257 3 5 (
|
||||
BQEAAAABzRcWJYuBn9eY8u4x+04jkYmSmfRa
|
||||
GuNc4soput6Fo2/HViu11Jo2uMnp4Z4MeGzt
|
||||
i4IGsL2Lp5vC66qXeX0Qqk+aIJBQUyHCF1nP
|
||||
mPad2hDVFpD4Lp/uArmHaaLxQ4px6LEe0PMG
|
||||
1W/a/gJWNxuiTmkSN5c9vXsQm3SuRnb0ef0=
|
||||
) ; key id = 38331
|
||||
14400 DNSKEY 257 3 5 (
|
||||
BQEAAAAB2CMCmaITzL7L6UmI0Y+u16LiyINg
|
||||
kYc3dxYunDYWK0FEXGa5L7ss8jepJnBM6KD/
|
||||
rekwqb5wgso/5VnSprhUUnQqec6ESuJ/9/Th
|
||||
I6i7zD6AnwdtXagTOaTRqWhUEcjgMIG4oJK/
|
||||
Pb5mZAlXvzPqmRkyeStRw0cUAEWQvdtuDcc=
|
||||
) ; key id = 51846
|
||||
14400 RRSIG DNSKEY 5 3 14400 20110126173931 (
|
||||
20110125173931 27647 sub.example.de.
|
||||
sg/apLP8ejq7KT+djaUwJqizKG4tq1jTLMLt
|
||||
NHLn/68rX5w4dY8DTeYxexb4r8Z23kVb0bg+
|
||||
lJmmBy5j2r8SMg== )
|
||||
14400 RRSIG DNSKEY 5 3 14400 20110126173931 (
|
||||
20110125173931 32679 sub.example.de.
|
||||
bzzolxuy/5cXaTOvYDGz+xiRffMSQUSCRicG
|
||||
jN2InbD0oghm9IlZYaerY3Cx4ta0xitl63Fa
|
||||
9n8DAb409BU+uR3SKw+EMQwdEhn1ixslf7Er
|
||||
N9nyPz+3hCteJ89htoyGBRehQbw3LkFsHPKS
|
||||
1q62yU3+dLOLqiJUGgXinFwZ81o= )
|
||||
14400 RRSIG DNSKEY 5 3 14400 20110126173931 (
|
||||
20110125173931 38331 sub.example.de.
|
||||
nflCKXmANdTDh1g72GpT5JzeaE9u+kZ6Kkds
|
||||
q4VbnnZjmv8flpsqH9XHV6QU7W7pFhLQ9i9X
|
||||
qYVPL5HzoZn0q4m08h2z9VCrfCVzfOZVr6S2
|
||||
TnL/RTbSRXMHwU63bMM7FNbPz2JlajNAIpfW
|
||||
7uHjqoQEWRcJ8ee7JkW5tiu5/5A= )
|
||||
14400 RRSIG DNSKEY 5 3 14400 20110126173931 (
|
||||
20110125173931 51846 sub.example.de.
|
||||
WaCBxN/IXv3g2NtoBm2epHkZqBTMONadExfN
|
||||
0rWSV0mazdli950enMmBwwIEZK+0FVwLpv4Z
|
||||
zgL5BHuPim7ObqnR6wM1gOpi65lU8IX5Ilbv
|
||||
OIrUZ5g0O1rYHUjaQKtKBTcgOo7ZtutIj4gc
|
||||
Xn+2dark9is8EoDHripF5TkDJgU= )
|
||||
a.sub.example.de. 7200 IN A 1.2.3.4
|
||||
7200 RRSIG A 5 4 7200 20110126173931 (
|
||||
20110125173931 27647 sub.example.de.
|
||||
zXzioVSpADspftLWazy+jcGRxHytDuZtUBkD
|
||||
dsjcU3fy6a8atHbcwUjd43rwzazxphVcL/sM
|
||||
CeWz5ZcXkYCWeQ== )
|
||||
7200 NSEC b.sub.example.de. A RRSIG NSEC
|
||||
7200 RRSIG NSEC 5 4 7200 20110126173931 (
|
||||
20110125173931 27647 sub.example.de.
|
||||
k6LWx56HsWiDm7DLUShd97q7dprzDXaocGVL
|
||||
UPB35LGLUzZIGx/80K+ppeqAD2KoiJ/d+jBi
|
||||
ZwtomkSGusfVIA== )
|
||||
b.sub.example.de. 7200 IN A 1.2.3.5
|
||||
7200 RRSIG A 5 4 7200 20110126173931 (
|
||||
20110125173931 27647 sub.example.de.
|
||||
b90i/duKEbOBKWDJ39xTlMbGJ3DqdTUCdH1y
|
||||
sTs96Ea2PZFNoCenAssREGxLG/SdArErfdOC
|
||||
Q1zCi5z2cYYeyg== )
|
||||
7200 NSEC c.sub.example.de. A RRSIG NSEC
|
||||
7200 RRSIG NSEC 5 4 7200 20110126173931 (
|
||||
20110125173931 27647 sub.example.de.
|
||||
EGurYn3qRMV+uwzTGq9asXnpKvLhX3qZhQh/
|
||||
Tb3AiQ+Oyl+PzfDjP1BI8jqejNTwvlRWBL4H
|
||||
RRBZMN/Pnn22bw== )
|
||||
c.sub.example.de. 7200 IN A 1.2.3.6
|
||||
7200 RRSIG A 5 4 7200 20110126173931 (
|
||||
20110125173931 27647 sub.example.de.
|
||||
DCFyTIcXCMd3wIdwLjDNXOINmMcQ1tYBzgry
|
||||
JnZZecok5A6TPXCQ5PrErgwWl6h9URa8M6Kd
|
||||
Yg6jLpDMcmdNug== )
|
||||
7200 NSEC localhost.sub.example.de. A RRSIG NSEC
|
||||
7200 RRSIG NSEC 5 4 7200 20110126173931 (
|
||||
20110125173931 27647 sub.example.de.
|
||||
cUvw2e+2VlJVaFGF5zciADg3W/DMz2zeLTlp
|
||||
bEav7jr7xFJdg9twcr+WtKh9xyAraH/0eqT8
|
||||
cs3z8i81I/Dgzg== )
|
||||
localhost.sub.example.de. 7200 IN A 127.0.0.1
|
||||
7200 RRSIG A 5 4 7200 20110126173931 (
|
||||
20110125173931 27647 sub.example.de.
|
||||
eKi4L2xErnSUAPH3jGWtLShBTab/ZMC86wdf
|
||||
F8jRpWkNzMqpxhmEOgeCnCA1cm3Ua/vrSSpA
|
||||
HmPpxba/FXtOkg== )
|
||||
7200 NSEC sub.example.de. A RRSIG NSEC
|
||||
7200 RRSIG NSEC 5 4 7200 20110126173931 (
|
||||
20110125173931 27647 sub.example.de.
|
||||
texCzbZHYWVAyNKaR2otusOB3nzL3NMPYApC
|
||||
Lg7vi4wuk08gC4CvTbEHz+4I7ZeWrMIHwNTp
|
||||
vsE/tnmaVsHM6Q== )
|
||||
|
|
@ -1,129 +0,0 @@
|
|||
; File written on Tue Jan 25 19:39:31 2011
|
||||
; dnssec_signzone version 9.7.2-P2
|
||||
example.de. 7200 IN SOA ns1.example.de. hostmaster.example.de. (
|
||||
315 ; serial
|
||||
43200 ; refresh (12 hours)
|
||||
1800 ; retry (30 minutes)
|
||||
1209600 ; expire (2 weeks)
|
||||
7200 ; minimum (2 hours)
|
||||
)
|
||||
7200 RRSIG SOA 5 2 7200 20110215173931 (
|
||||
20110125173931 60407 example.de.
|
||||
D25r9o5y0UlIClgAHwOq9P1/prHCO3/KI/91
|
||||
ZHUOA1HPvRt/EW4vQdHNsZPzTgbEZlkrzK1B
|
||||
f9Z8FRjiPwwuTg== )
|
||||
7200 NS ns1.example.de.
|
||||
7200 NS ns2.example.de.
|
||||
7200 RRSIG NS 5 2 7200 20110215173931 (
|
||||
20110125173931 60407 example.de.
|
||||
UDFg0Wr335Zhx2JZNw7ctla8EpFv+8eVjh8Y
|
||||
YDv47XmCXuazL4EZV3efeU4wnuxmphL02j8X
|
||||
NLpnUVnRP2QufQ== )
|
||||
7200 NSEC localhost.example.de. NS SOA RRSIG NSEC DNSKEY
|
||||
7200 RRSIG NSEC 5 2 7200 20110215173931 (
|
||||
20110125173931 60407 example.de.
|
||||
K2wUxsJtWVpASeYbWyG58uK4DK8w+TRTSRiJ
|
||||
aYtgUDjUGeUeNbHaT1FhfXl4xpNts/irmB6K
|
||||
YDeVNvnB7piRPw== )
|
||||
14400 DNSKEY 256 3 5 (
|
||||
BQEAAAABw62oxcUQ8mF4T6zH+tAkM0FU3nXJ
|
||||
4sgnBSUa884gZL2AlG+t7FpwrRm/Hish/hxV
|
||||
RzmM8q2srgLHBYAk12VkMQ==
|
||||
) ; key id = 60407
|
||||
14400 DNSKEY 256 3 5 (
|
||||
BQEAAAAB13b8+4oBaYaLYdDvH6fwVwDfohlz
|
||||
GdSu5A9nO/wJ1taCB+4Twn3TSAtlttLmzYad
|
||||
5EbBUIn+4CLBKmc4sKn/cw==
|
||||
) ; key id = 25598
|
||||
14400 DNSKEY 257 3 5 (
|
||||
BQEAAAABDOkPawC/tCqSITj6lvzcIPwcMEX+
|
||||
Nvz17GBu85jmigMuvZQUYZBVUmJNNBbCNStl
|
||||
z+Y+1pGg9HbWFvn0tpH/bm4mZPlJmk+WxQhH
|
||||
z7eTm5xhSaSEEzq0uf087tAbaq1yaTpTtA2R
|
||||
7JXIPxt6CuD9Ou5bbYOzrFnBq1VBAYrwB6t/
|
||||
us10+Ab7T6Jvie/W+v4jto1Xx912Z8HHTbU4
|
||||
8Mlp1+mUjQ==
|
||||
) ; key id = 37983
|
||||
14400 DNSKEY 257 3 5 (
|
||||
BQEAAAABDV7kFHqVcWLoSAShdlXU5LKUdyU4
|
||||
LlsJGYMr8oIpjEzvwonRmX5pRiEjVhTwx+vx
|
||||
6eWluv6txXVu+F0g2ykmqUQdMfPYWmD9AJOq
|
||||
vc2tCKVSRePqZ+HeIZR+heBnFKr5kWQmB5XO
|
||||
lMdWNRA3y78s/LufVB8hD7r260jrVJ0W6wSM
|
||||
GDjN4zQce8rHCe+LNB1GfaIASkMWjdgxNNAs
|
||||
K9bqDM8Euw==
|
||||
) ; key id = 47280
|
||||
14400 RRSIG DNSKEY 5 2 14400 20110215173931 (
|
||||
20110125173931 47280 example.de.
|
||||
AiQOEpltQhIL1w1bnStthur44g28NqsYjUfV
|
||||
BU5yNlEs84I+U3N2qpTC8dske08pwOikBCFG
|
||||
Yao6Dglj4zi5dbFbp+ssErNWTOX1khHe8FvI
|
||||
keq7lkbMDoOeiecJ5paN2/yV5gX3Vn0RZXJb
|
||||
CQFVdrNLQ8gKdMga9YKw70n43MxdgkDJRIVo
|
||||
gUxKkMaMo/g2KORJf4iOZPRvLfkwFb/QgTsx
|
||||
Eg== )
|
||||
14400 RRSIG DNSKEY 5 2 14400 20110215173931 (
|
||||
20110125173931 60407 example.de.
|
||||
iomqvy1Na7p8UHNl9U8hgHqg+BBe7lwPNMv7
|
||||
Tur+g2ss3LYZkvkwZgdhP/MNQgF0BTrFIK/n
|
||||
vjk+0gQ9RFqKbA== )
|
||||
localhost.example.de. 7200 IN A 127.0.0.1
|
||||
7200 RRSIG A 5 3 7200 20110215173931 (
|
||||
20110125173931 60407 example.de.
|
||||
EzoKkOXLzlKf9rTaxofUW5uAmsaIZe2Jrf/R
|
||||
FgPsnDvXDkGIeA54f+uw0+alWKb4gMgynJJ+
|
||||
jjuF3d4TsoLC4A== )
|
||||
7200 NSEC ns1.example.de. A RRSIG NSEC
|
||||
7200 RRSIG NSEC 5 3 7200 20110215173931 (
|
||||
20110125173931 60407 example.de.
|
||||
BPjsJrlWAQNSqVOJ5hRb1iL8ABPdGID+qdYF
|
||||
AWHYpZOsMg3TXsmOfsrZ8tzJ44Ag0FmHdWYr
|
||||
cSaie8XqF3dndw== )
|
||||
ns1.example.de. 7200 IN A 1.0.0.5
|
||||
7200 RRSIG A 5 3 7200 20110215173931 (
|
||||
20110125173931 60407 example.de.
|
||||
FZu2Oy/7txl4G47fh2gn/f0k4+9YqbdMaCoj
|
||||
DK/5LCUjQIzK+YHMKnurZVmMSbvFCCCcKgUd
|
||||
rBO1Kbc3ZFRUDg== )
|
||||
7200 AAAA 2001:db8::53
|
||||
7200 RRSIG AAAA 5 3 7200 20110215173931 (
|
||||
20110125173931 60407 example.de.
|
||||
ckrkMyljZdlHRMzYceGk/Upzbmijw2bPrhda
|
||||
6y9l+yS/zOCYQ3qGfzLFDLUPeMDLEL5f7gxa
|
||||
adKw2t8cu/BLnw== )
|
||||
7200 NSEC ns2.example.de. A AAAA RRSIG NSEC
|
||||
7200 RRSIG NSEC 5 3 7200 20110215173931 (
|
||||
20110125173931 60407 example.de.
|
||||
fZadcPS/Zhf+DKNupxsEZOSWm8mC1aimYHSi
|
||||
00zMJL5oZdUCXgsJYha69s8gtOn12K95doRw
|
||||
2AP6FArRosKy3Q== )
|
||||
ns2.example.de. 7200 IN A 1.2.0.6
|
||||
7200 RRSIG A 5 3 7200 20110215173931 (
|
||||
20110125173931 60407 example.de.
|
||||
QXIJk7GcV6+LlGEtrClHCS2ddj/9fqtqKD9h
|
||||
BfADqhMYLlVKjQe8grBdgOdbvvmAiSibdbJI
|
||||
4lFjh6EkXglPIg== )
|
||||
7200 NSEC sub.example.de. A RRSIG NSEC
|
||||
7200 RRSIG NSEC 5 3 7200 20110215173931 (
|
||||
20110125173931 60407 example.de.
|
||||
HbXCvcFWhQZwhPsyHxht7auAMyYrqOhhI3/Q
|
||||
S+1jwao3ejHJRMdTWrTgyBAXMJpS1SeMnD9i
|
||||
Dx7A5OvtVUoj7g== )
|
||||
sub.example.de. 7200 IN NS ns1.example.de.
|
||||
7200 DS 38331 5 1 (
|
||||
8F7E90EE2686DAE4D31CEE40142AD6A25670
|
||||
B0A0 )
|
||||
7200 DS 38331 5 2 (
|
||||
7B791220D03926DC6D3531CD155EF1E2AB20
|
||||
2CE5955DF61079BEDD4867400707 )
|
||||
7200 RRSIG DS 5 3 7200 20110215173931 (
|
||||
20110125173931 60407 example.de.
|
||||
GJcNtYbOxbVYA73qgH9bpPvrVIBbUqD0y/dX
|
||||
ZAA1ZpXc3Kz7a4Dzr4fn20KiGF0/huYoo5vt
|
||||
kU+GHU3wuUTtTQ== )
|
||||
7200 NSEC example.de. NS DS RRSIG NSEC
|
||||
7200 RRSIG NSEC 5 3 7200 20110215173931 (
|
||||
20110125173931 60407 example.de.
|
||||
LQT1mxY77PpPtpdrjZ5HAzxsQDar+6bsodd9
|
||||
TWNvagqjzvfLTC5Lc5Jy63YmdVkZNmH0RCBP
|
||||
ciRqPQYlvMx8rg== )
|
||||
|
|
@ -1,19 +0,0 @@
|
|||
$ORIGIN .
|
||||
example.de 7200 IN DNSKEY 257 3 5 (
|
||||
BQEAAAABDOkPawC/tCqSITj6lvzcIPwcMEX+
|
||||
Nvz17GBu85jmigMuvZQUYZBVUmJNNBbCNStl
|
||||
z+Y+1pGg9HbWFvn0tpH/bm4mZPlJmk+WxQhH
|
||||
z7eTm5xhSaSEEzq0uf087tAbaq1yaTpTtA2R
|
||||
7JXIPxt6CuD9Ou5bbYOzrFnBq1VBAYrwB6t/
|
||||
us10+Ab7T6Jvie/W+v4jto1Xx912Z8HHTbU4
|
||||
8Mlp1+mUjQ==
|
||||
) ; key id = 37983
|
||||
7200 IN DNSKEY 257 3 5 (
|
||||
BQEAAAABDV7kFHqVcWLoSAShdlXU5LKUdyU4
|
||||
LlsJGYMr8oIpjEzvwonRmX5pRiEjVhTwx+vx
|
||||
6eWluv6txXVu+F0g2ykmqUQdMfPYWmD9AJOq
|
||||
vc2tCKVSRePqZ+HeIZR+heBnFKr5kWQmB5XO
|
||||
lMdWNRA3y78s/LufVB8hD7r260jrVJ0W6wSM
|
||||
GDjN4zQce8rHCe+LNB1GfaIASkMWjdgxNNAs
|
||||
K9bqDM8Euw==
|
||||
) ; key id = 47280
|
||||
|
|
@ -1,24 +0,0 @@
|
|||
2010-02-06 00:54:11.045: notice: "example.de.": re-signing triggered: Modified KSK in delegated domain
|
||||
2010-02-21 12:51:38.667: notice: "example.de.": re-signing triggered: Modified KSK in delegated domain
|
||||
2010-02-25 00:21:05.030: info: "example.de.": new key 39599 generated for publishing
|
||||
2010-02-25 00:21:05.030: notice: "example.de.": re-signing triggered: Modfied zone key set
|
||||
2010-02-25 00:22:32.667: notice: "example.de.": re-signing triggered: Modfied zone key set
|
||||
2010-02-25 23:42:40.317: notice: "example.de.": re-signing triggered: Modified KSK in delegated domain
|
||||
2010-03-02 11:00:04.526: notice: "example.de.": re-signing triggered: Modified KSK in delegated domain
|
||||
2010-03-02 11:00:16.077: notice: "example.de.": re-signing triggered: Modified KSK in delegated domain
|
||||
2010-03-03 23:22:07.163: notice: "example.de.": lifetime of zone signing key 63077 exceeded: ZSK rollover done
|
||||
2010-03-03 23:22:07.163: notice: "example.de.": re-signing triggered: Modfied zone key set
|
||||
2010-03-12 00:00:27.706: info: "example.de.": old ZSK 63077 removed
|
||||
2010-03-12 00:00:27.710: notice: "example.de.": re-signing triggered: Modfied zone key set
|
||||
2010-03-12 00:45:26.305: notice: "example.de.": re-signing triggered: Modified KSK in delegated domain
|
||||
2010-04-01 01:05:48.848: notice: "example.de.": lifetime of zone signing key 39599 exceeded since 43m41s: ZSK rollover deferred: waiting for published key
|
||||
2010-04-01 01:05:48.928: info: "example.de.": new key 9743 generated for publishing
|
||||
2010-04-01 01:05:48.929: notice: "example.de.": re-signing triggered: Modfied zone key set
|
||||
2010-08-26 22:54:24.762: notice: "example.de.": lifetime of zone signing key 39599 exceeded: ZSK rollover done
|
||||
2010-08-26 22:54:24.837: info: "example.de.": new key 18539 generated for publishing
|
||||
2010-08-26 22:54:24.837: notice: "example.de.": re-signing triggered: Modfied zone key set
|
||||
2010-08-26 23:11:44.548: notice: "example.de.": re-signing triggered: Modified KSK in delegated domain
|
||||
2010-10-21 13:41:23.152: info: "example.de.": old ZSK 39599 removed
|
||||
2010-10-21 13:41:23.152: notice: "example.de.": lifetime of zone signing key 9743 exceeded: ZSK rollover done
|
||||
2010-10-21 13:41:23.152: notice: "example.de.": re-signing triggered: Modfied zone key set
|
||||
2011-01-25 10:13:58.477: notice: "example.de.": re-signing triggered: Modified KSK in delegated domain
|
||||
|
|
@ -1,47 +0,0 @@
|
|||
2010-02-06 00:54:11.044: info: "sub.example.de.": kskrollover phase2: send new key 33580 to the parent zone
|
||||
2010-02-21 12:51:38.487: info: "sub.example.de.": kskrollover phase3: Remove old key 3831
|
||||
2010-02-21 12:51:38.488: notice: "sub.example.de.": lifetime of zone signing key 320 exceeded: ZSK rollover done
|
||||
2010-02-21 12:51:38.556: info: "sub.example.de.": new key 17513 generated for publishing
|
||||
2010-02-21 12:51:38.556: notice: "sub.example.de.": re-signing triggered: Modfied zone key set
|
||||
2010-02-25 00:21:04.838: info: "sub.example.de.": kskrollover phase1: New key 27861 generated
|
||||
2010-02-25 00:21:04.838: info: "sub.example.de.": old ZSK 320 removed
|
||||
2010-02-25 00:21:04.838: notice: "sub.example.de.": lifetime of zone signing key 65003 exceeded: ZSK rollover done
|
||||
2010-02-25 00:21:04.876: info: "sub.example.de.": new key 31547 generated for publishing
|
||||
2010-02-25 00:21:04.876: notice: "sub.example.de.": re-signing triggered: Modfied zone key set
|
||||
2010-02-25 01:01:09.615: info: "sub.example.de.": old ZSK 65003 removed
|
||||
2010-02-25 01:01:09.615: notice: "sub.example.de.": re-signing triggered: Modfied zone key set
|
||||
2010-02-25 23:42:40.316: info: "sub.example.de.": kskrollover phase2: send new key 9663 to the parent zone
|
||||
2010-03-02 11:00:04.328: info: "sub.example.de.": kskrollover phase3: Remove old key 59961
|
||||
2010-03-02 11:00:04.328: notice: "sub.example.de.": lifetime of zone signing key 17513 exceeded: ZSK rollover done
|
||||
2010-03-02 11:00:04.444: info: "sub.example.de.": new key 63530 generated for publishing
|
||||
2010-03-02 11:00:04.444: notice: "sub.example.de.": re-signing triggered: Modfied zone key set
|
||||
2010-03-02 11:00:16.024: info: "sub.example.de.": kskrollover phase1: New key 42639 generated
|
||||
2010-03-02 11:00:16.025: notice: "sub.example.de.": re-signing triggered: Modfied zone key set
|
||||
2010-03-03 23:22:07.066: info: "sub.example.de.": kskrollover phase2: send new key 27861 to the parent zone
|
||||
2010-03-03 23:22:07.066: info: "sub.example.de.": old ZSK 17513 removed
|
||||
2010-03-03 23:22:07.067: notice: "sub.example.de.": re-signing triggered: Modfied zone key set
|
||||
2010-03-12 00:00:27.495: info: "sub.example.de.": kskrollover phase3: Remove old key 9663
|
||||
2010-03-12 00:00:27.495: notice: "sub.example.de.": lifetime of zone signing key 31547 exceeded: ZSK rollover done
|
||||
2010-03-12 00:00:27.609: info: "sub.example.de.": new key 7295 generated for publishing
|
||||
2010-03-12 00:00:27.609: notice: "sub.example.de.": re-signing triggered: Modfied zone key set
|
||||
2010-03-12 00:45:26.265: info: "sub.example.de.": kskrollover phase1: New key 8544 generated
|
||||
2010-03-12 00:45:26.265: info: "sub.example.de.": old ZSK 31547 removed
|
||||
2010-03-12 00:45:26.266: notice: "sub.example.de.": re-signing triggered: Modfied zone key set
|
||||
2010-04-01 01:05:48.169: info: "sub.example.de.": kskrollover phase2: send new key 42639 to the parent zone
|
||||
2010-04-01 01:05:48.169: notice: "sub.example.de.": lifetime of zone signing key 63530 exceeded: ZSK rollover done
|
||||
2010-04-01 01:05:48.650: info: "sub.example.de.": new key 40559 generated for publishing
|
||||
2010-04-01 01:05:48.650: notice: "sub.example.de.": re-signing triggered: Modfied zone key set
|
||||
2010-08-26 22:54:24.495: info: "sub.example.de.": kskrollover phase3: Remove old key 8544
|
||||
2010-08-26 22:54:24.495: info: "sub.example.de.": old ZSK 63530 removed
|
||||
2010-08-26 22:54:24.513: notice: "sub.example.de.": lifetime of zone signing key 7295 exceeded: ZSK rollover done
|
||||
2010-08-26 22:54:24.617: info: "sub.example.de.": new key 25007 generated for publishing
|
||||
2010-08-26 22:54:24.617: notice: "sub.example.de.": re-signing triggered: Modfied zone key set
|
||||
2010-08-26 23:11:44.485: info: "sub.example.de.": kskrollover phase1: New key 38331 generated
|
||||
2010-08-26 23:11:44.485: info: "sub.example.de.": old ZSK 7295 removed
|
||||
2010-08-26 23:11:44.513: notice: "sub.example.de.": re-signing triggered: Modfied zone key set
|
||||
2010-10-21 13:41:22.956: info: "sub.example.de.": kskrollover phase2: send new key 27861 to the parent zone
|
||||
2010-10-21 13:41:22.956: notice: "sub.example.de.": lifetime of zone signing key 40559 exceeded: ZSK rollover done
|
||||
2010-10-21 13:41:22.956: notice: "sub.example.de.": re-signing triggered: Modfied zone key set
|
||||
2010-10-21 14:30:47.663: info: "sub.example.de.": old ZSK 40559 removed
|
||||
2010-10-21 14:30:47.663: notice: "sub.example.de.": re-signing triggered: Modfied zone key set
|
||||
2011-01-25 10:15:57.334: notice: "sub.example.de.": re-signing triggered: Zone file edited
|
||||
|
|
@ -1 +0,0 @@
|
|||
../zkt-ls.sh
|
||||
|
|
@ -1 +0,0 @@
|
|||
../zkt-signer.sh
|
||||
|
|
@ -1,39 +0,0 @@
|
|||
#
|
||||
# @(#) dnssec.conf vT0.96 (c) Feb 2005 - May 2008 Holger Zuleger hznet.de
|
||||
#
|
||||
|
||||
# dnssec-zkt options
|
||||
Zonedir: "extern"
|
||||
Recursive: True
|
||||
PrintTime: False
|
||||
PrintAge: True
|
||||
LeftJustify: False
|
||||
|
||||
# zone specific values
|
||||
ResignInterval: 1w # (604800 seconds)
|
||||
Sigvalidity: 10d # (864000 seconds)
|
||||
Max_TTL: 8h # (28800 seconds)
|
||||
Propagation: 5m # (300 seconds)
|
||||
KEY_TTL: 1h # (3600 seconds)
|
||||
Serialformat: unixtime
|
||||
|
||||
# signing key parameters
|
||||
KSK_lifetime: 1y # (31536000 seconds)
|
||||
KSK_algo: RSASHA1 # (Algorithm ID 5)
|
||||
KSK_bits: 1300
|
||||
KSK_randfile: "/dev/urandom"
|
||||
ZSK_lifetime: 30d # (2592000 seconds)
|
||||
ZSK_algo: RSASHA1 # (Algorithm ID 5)
|
||||
ZSK_bits: 512
|
||||
ZSK_randfile: "/dev/urandom"
|
||||
|
||||
# dnssec-signer options
|
||||
LogFile: "zkt-ext.log"
|
||||
LogLevel: "debug"
|
||||
SyslogFacility: "none"
|
||||
SyslogLevel: "notice"
|
||||
VerboseLog: 2
|
||||
Keyfile: "dnskey.db"
|
||||
Zonefile: "zone.db"
|
||||
DLV_Domain: ""
|
||||
Sig_Pseudorand: True
|
||||
|
|
@ -1,39 +0,0 @@
|
|||
#
|
||||
# @(#) dnssec.conf vT0.96 (c) Feb 2005 - May 2008 Holger Zuleger hznet.de
|
||||
#
|
||||
|
||||
# dnssec-zkt options
|
||||
Zonedir: "intern"
|
||||
Recursive: True
|
||||
PrintTime: False
|
||||
PrintAge: True
|
||||
LeftJustify: False
|
||||
|
||||
# zone specific values
|
||||
ResignInterval: 5h # (18000 seconds)
|
||||
Sigvalidity: 1d # (86400 seconds)
|
||||
Max_TTL: 30m # (1800 seconds)
|
||||
Propagation: 1m # (60 seconds)
|
||||
KEY_TTL: 30m # (1800 seconds)
|
||||
Serialformat: unixtime
|
||||
|
||||
# signing key parameters
|
||||
KSK_lifetime: 1y # (31536000 seconds)
|
||||
KSK_algo: RSASHA1 # (Algorithm ID 5)
|
||||
KSK_bits: 1300
|
||||
KSK_randfile: "/dev/urandom"
|
||||
ZSK_lifetime: 30d # (2592000 seconds)
|
||||
ZSK_algo: RSASHA1 # (Algorithm ID 5)
|
||||
ZSK_bits: 512
|
||||
ZSK_randfile: "/dev/urandom"
|
||||
|
||||
# dnssec-signer options
|
||||
LogFile: "zkt-int.log"
|
||||
LogLevel: "debug"
|
||||
SyslogFacility: "none"
|
||||
SyslogLevel: "notice"
|
||||
VerboseLog: 2
|
||||
Keyfile: "dnskey.db"
|
||||
Zonefile: "zone.db"
|
||||
DLV_Domain: ""
|
||||
Sig_Pseudorand: True
|
||||
|
|
@ -1,7 +0,0 @@
|
|||
#!/bin/sh
|
||||
#
|
||||
# Shell script to start the dnssec-signer
|
||||
# command out of the view directory
|
||||
#
|
||||
|
||||
ZKT_CONFFILE=`pwd`/dnssec.conf ../../dnssec-signer -V extern "$@"
|
||||
|
|
@ -1,7 +0,0 @@
|
|||
#!/bin/sh
|
||||
#
|
||||
# Shell script to start the dnssec-signer
|
||||
# command out of the view directory
|
||||
#
|
||||
|
||||
ZKT_CONFFILE=`pwd`/dnssec.conf ../../dnssec-signer -V intern "$@"
|
||||
|
|
@ -1,7 +0,0 @@
|
|||
#!/bin/sh
|
||||
#
|
||||
# Shell script to start the dnssec-zkt command
|
||||
# out of the view directory
|
||||
#
|
||||
|
||||
ZKT_CONFFILE=`pwd`/dnssec.conf ../../dnssec-zkt --view extern "$@"
|
||||
|
|
@ -1,7 +0,0 @@
|
|||
#!/bin/sh
|
||||
#
|
||||
# Shell script to start the dnssec-zkt command
|
||||
# out of the view directory
|
||||
#
|
||||
|
||||
ZKT_CONFFILE=`pwd`/dnssec.conf ../../dnssec-zkt --view intern "$@"
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20110125091121
|
||||
;% lifetime=84d
|
||||
example.net. IN DNSKEY 256 3 5 BQEAAAABqSWPYNt6RitV7CJxyFXjIPeP6zSXtBki5cAiVVA3SdX0cBs6 gWttgt+wxEPMApn/ncgjqcUHTJEVHyd/TrL/Aw==
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 5 (RSASHA1)
|
||||
Modulus: qSWPYNt6RitV7CJxyFXjIPeP6zSXtBki5cAiVVA3SdX0cBs6gWttgt+wxEPMApn/ncgjqcUHTJEVHyd/TrL/Aw==
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: ZcFZXvGGkc0uEOtIHBJaTdBpl/aTKs4xGhG/eOMinMPHbUPlL5R1KL/27O+KQnfs1xjwz48w5Xos8CoTG+1n0Q==
|
||||
Prime1: 1ho0OW0hJVUICO4jthhzFp2ETYke7vssfhq2oKrsjgk=
|
||||
Prime2: yj87c5Ewsksm+SsHsBQVC6Gd6P19Yu+ZY7dPeBvW56s=
|
||||
Exponent1: LwSIjbnndDmgi0pCo0CW95qvG1VEUniUQQmYmda/L7k=
|
||||
Exponent2: jsIwd0hy3NXOjUbXkeT25G/3QNQcXcIwHzupbZLpuh0=
|
||||
Coefficient: VRdfIjOr87SWcUBSP9wQGjD1GcCsV3OQ0u03QQwofmo=
|
||||
|
|
@ -1 +0,0 @@
|
|||
example.net. IN DNSKEY 257 3 5 BQEAAAABDEEycfY6uqWNTpQO8ygi9xms6NOFYGhCjijN109fVGJ4KDnI ZtLhoFrOKru9rZn+pyqurlyZG4vESg0BMty6xljVDlr/TegDYFTN19mQ uwvlasJhZPv9pjROPqQGnqLaw3O4OKCY9HgTTPdXK1hQ4Mg2rNU4SM2T u5ki91f5AQqiXF8KYMics0mwVvpj5C2YTDvE9SafLrce68JM6DaiC6E1 sQ==
|
||||
|
|
@ -1,10 +0,0 @@
|
|||
Private-key-format: v1.2
|
||||
Algorithm: 5 (RSASHA1)
|
||||
Modulus: DEEycfY6uqWNTpQO8ygi9xms6NOFYGhCjijN109fVGJ4KDnIZtLhoFrOKru9rZn+pyqurlyZG4vESg0BMty6xljVDlr/TegDYFTN19mQuwvlasJhZPv9pjROPqQGnqLaw3O4OKCY9HgTTPdXK1hQ4Mg2rNU4SM2Tu5ki91f5AQqiXF8KYMics0mwVvpj5C2YTDvE9SafLrce68JM6DaiC6E1sQ==
|
||||
PublicExponent: AQAAAAE=
|
||||
PrivateExponent: A3ZXTF8afjlxddgO/sDxotc0XLBMa3sNrXhCpdFzeDV1HszZbz1lP8rrZjA1wQgSo56DjiGRKTsHjAAm4xN1lGYKBZuVF4U3uiWie2PhJStt7kckNduKOfV9Nofow5Jh8I2lXKqcOJ8Qd+EJYIsajdBoGQ72PGGfDaHphbN/mW13n59PlilMF4RRRybcMA6jTAOfvIcv5Mes3+ADh0TktHdHQQ==
|
||||
Prime1: A+SKyrgtNzGVpAXPQysMQ9O/10B/+nhy6//1F5Epxihyuln+d2euh+TjVneojx4D2JUflDUSD5BQAdflDb+KiBXdQjBEmqfWwY+INwSQzv4M5Q==
|
||||
Prime2: AyXovkiIs7ywIRS6FfRolMMUeh3yeYNtCVAvLB6EC2MiNCzfkDOFB7rpmUkZR8HYUWuz1hQfR781RDO81Sp3RIpSyL7SwOqkpMZyaSgK/GKE3Q==
|
||||
Exponent1: D1vC405mkcUVfno92EuBXomRiOG7VeSyjwofgCpa0JKR6J2BThdCGrcVbq68ucIddn+cbkD8JsZB3k4aeDYFxm6d1En1Z2C1cVHrzCFi2zFV
|
||||
Exponent2: N+iliM1Qp3spcsR06kXImb/N4FosHrZkXtcbRIMWhV8NBcyqLDIfGlNluaiztv4rf6Kn2UyVeiGC822nqZHcW5PiXJnBEWs9AC4Di1QzZh0h
|
||||
Coefficient: AtZ4sYqGgyB5kfdcQBBlIkPbsRRNKrUVAsZkjabdZTQa+ox6tYnlVjh7BgPMHJlj/Z4VTRJ5rfAUPnB4ZwO/r1eAJLd+vxjJb9M7DaGMc+RqQA==
|
||||
|
|
@ -1,3 +0,0 @@
|
|||
;% generationtime=20101127101704
|
||||
;% lifetime=63d
|
||||
example.net. IN DNSKEY 256 3 5 BQEAAAABw6SqqsNvYqmiYNMlroODy8rMZdbo2Pe8ldEblO9qtxI5oR4i UeUW/q3rZgCTuZI+ymMiLmaFSF1DXsAyG0M03Q==
|
||||
Some files were not shown because too many files have changed in this diff Show more
Loading…
Reference in a new issue