The NSEC3 -> NSEC private record may be added later
Check each delta for the NSEC3 -> NSEC private record addition
as it may be added in the second delta.
(cherry picked from commit 80a4dff986)
This commit is contained in:
@@ -1796,9 +1796,11 @@ status=$((status + ret))
|
||||
echo_i "check that the startup change from NSEC3 to NSEC is properly signed ($n)"
|
||||
ret=0
|
||||
$JOURNALPRINT ns3/nsec3-to-nsec.example.db.jnl \
|
||||
| awk 'BEGIN { count=0; ok=0 }
|
||||
$1 == "del" && $5 == "SOA" { count++; if (count == 2) { if (ok) { exit(0); } else { exit(1); } } }
|
||||
$1 == "add" && $5 == "RRSIG" && $6 == "TYPE65534" { ok=1 }
|
||||
| awk 'BEGIN { private=0; rrsig=0; ok=0 }
|
||||
$1 == "del" && $5 == "SOA" { if (private || rrsig) { if (private == rrsig) { exit(0); } else { exit(1); } } }
|
||||
$1 == "add" && $5 == "TYPE65534" { private=1 }
|
||||
$1 == "add" && $5 == "RRSIG" && $6 == "TYPE65534" { rrsig=1 }
|
||||
END { if (private || rrsig) { if (private == rrsig) { exit(0); } else { exit(1); } } else { exit (1); } }
|
||||
' || ret=1
|
||||
n=$((n + 1))
|
||||
if [ "$ret" -ne 0 ]; then echo_i "failed"; fi
|
||||
|
||||
Reference in New Issue
Block a user