BIND 10 #1148: Make XfrOut use global TSIG keyring

BIND 10 Development do-not-reply at isc.org
Wed Jul 13 08:12:33 UTC 2011


#1148: Make XfrOut use global TSIG keyring
-------------------------------+-----------------------------------------
            Reporter:  vorner  |                        Owner:
                Type:  defect  |                       Status:  new
            Priority:  minor   |                    Milestone:  New Tasks
           Component:  xfrout  |                     Keywords:
           Sensitive:  0       |              Defect Severity:  N/A
         Sub-Project:  DNS     |  Feature Depending on Ticket:
Estimated Difficulty:  0       |          Add Hours to Ticket:  0
         Total Hours:  0       |                    Internal?:  0
-------------------------------+-----------------------------------------
 As discussed on
 https://lists.isc.org/pipermail/bind10-dev/2011-July/002480.html, the
 XfrOut should use global TSIG keyring instead of its own. This will easy
 up shared secrets management (because they will all be in one place) and
 per-zone and per-key access will be handled using ACL, which will
 reference the key's name.

-- 
Ticket URL: <http://bind10.isc.org/ticket/1148>
BIND 10 Development <http://bind10.isc.org>
BIND 10 Development


More information about the bind10-tickets mailing list