Regarding HMAC-SHA256 and RSASHA512 key generation algorithm in dnssec-keygen

Alan Clegg alan at
Thu Mar 6 00:55:29 UTC 2014

On 3/6/14, 12:40 AM, Gaurav Kansal wrote:

> I was wondering if HMAC* keys are not used for zone then why the same is
> displayed when we use "dnssec-keygen -h"

Because dnssec-keygen is used to generate more than just DNSSEC zone keys.


-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 600 bytes
Desc: OpenPGP digital signature
URL: <>

More information about the bind-users mailing list