From 2cc7515f8a0c2f5f86ec85a853c7cb855b3d9536 Mon Sep 17 00:00:00 2001
From: Tinderbox User
- Delete a given TKEY-negotated key from the server.
+ Delete a given TKEY-negotiated key from the server.
(This does not apply to statically configured TSIG
keys.)
keyname
[view]
If break-dnssec,
- then AAAA records are deleted even when dnssec is enabled.
+ then AAAA records are deleted even when DNSSEC is enabled.
As suggested by the name, this makes the response not verify,
because the DNSSEC protocol is designed detect deletions.
Identical to filter-aaaa-on-v4,
- excppt it filters AAAA responses to queries from IPv6
+ except it filters AAAA responses to queries from IPv6
clients instead of IPv4 clients. To filter all
responses, set both options to yes.
If yes, this enables
"bump in the wire" signing of a zone, where a
- unsigned zone is transfered in or loaded from
+ unsigned zone is transferred in or loaded from
disk and a signed version of the zone is served,
with possibly, a different serial number. This
behaviour is disabled by default.