9.7.0rc1 auto-dnssec control of RRSIG generation

joao damas joao at bondis.org
Mon Dec 28 15:13:08 UTC 2009


is there any way to control the validity period of RRSIGs generated by  
9.7.0rc1 with auto-dnssec maintain?
I just had a zone with its own signing policy that got turned into  
BIND's default 30 day validity for RRSIGs when turning on auto-dnssec.
I love defaults, but also like software to let me do what I want. so  
an option like that would be welcome. (dnssec-settime deals with  
timing for keys, but not for signatures)

Joao



More information about the bind-workers mailing list