diff --git a/bin/dnssec/dnssec-keygen.8 b/bin/dnssec/dnssec-keygen.8 index 24217c5601..b173d023b0 100644 --- a/bin/dnssec/dnssec-keygen.8 +++ b/bin/dnssec/dnssec-keygen.8 @@ -1,4 +1,4 @@ -.\" Copyright (C) 2004, 2005, 2007 Internet Systems Consortium, Inc. ("ISC") +.\" Copyright (C) 2004, 2005, 2007, 2008 Internet Systems Consortium, Inc. ("ISC") .\" Copyright (C) 2000-2003 Internet Software Consortium. .\" .\" Permission to use, copy, modify, and distribute this software for any @@ -13,7 +13,7 @@ .\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR .\" PERFORMANCE OF THIS SOFTWARE. .\" -.\" $Id: dnssec-keygen.8,v 1.38.130.1 2008/10/15 01:40:39 tbox Exp $ +.\" $Id: dnssec-keygen.8,v 1.38.130.2 2008/10/16 01:39:57 tbox Exp $ .\" .hy 0 .ad l @@ -194,7 +194,7 @@ RFC 4033. .PP Internet Systems Consortium .SH "COPYRIGHT" -Copyright \(co 2004, 2005, 2007 Internet Systems Consortium, Inc. ("ISC") +Copyright \(co 2004, 2005, 2007, 2008 Internet Systems Consortium, Inc. ("ISC") .br Copyright \(co 2000\-2003 Internet Software Consortium. .br diff --git a/bin/dnssec/dnssec-keygen.html b/bin/dnssec/dnssec-keygen.html index fef22b8189..6198063a06 100644 --- a/bin/dnssec/dnssec-keygen.html +++ b/bin/dnssec/dnssec-keygen.html @@ -1,5 +1,5 @@ - +
@@ -32,7 +32,7 @@dnssec-keygen {-a algorithm} {-b keysize} {-n nametype} [-c ] [class-e] [-f ] [flag-g ] [generator-h] [-k] [-p ] [protocol-r ] [randomdev-s ] [strength-t ] [type-v ] {name}level
dnssec-keygen generates keys for DNSSEC (Secure DNS), as defined in RFC 2535 and RFC 4034. It can also generate keys for use with @@ -40,7 +40,7 @@
To generate a 768-bit DSA key for the domain
example.com, the following command would be
@@ -215,7 +215,7 @@
dnssec-signzone(8), BIND 9 Administrator Reference Manual, RFC 2539, @@ -224,7 +224,7 @@
dnssec-signzone [-a] [-c ] [class-d ] [directory-e ] [end-time-f ] [output-file-g] [-h] [-k ] [key-l ] [domain-i ] [interval-I ] [input-format-j ] [jitter-N ] [soa-serial-format-o ] [origin-O ] [output-format-p] [-r ] [randomdev-s ] [start-time-t] [-v ] [level-z] {zonefile} [key...]
dnssec-signzone signs a zone. It generates NSEC and RRSIG records and produces a signed version of the @@ -43,7 +43,7 @@
The following command signs the example.com
zone with the DSA key generated by dnssec-keygen
@@ -270,14 +270,14 @@ db.example.com.signed
%
@@ -2862,11 +2862,12 @@ options { to address (A or AAAA) records and that glue address records exist for delegated zones. For MX and SRV records only in-zone hostnames are - checked (for out-of-zone hostnames use named-checkzone). + checked (for out-of-zone hostnames use + named-checkzone). For NS records only names below top of zone are checked (for out-of-zone names and glue consistency - checks use named-checkzone). The default is - yes. + checks use named-checkzone). + The default is yes.
@@ -2918,7 +2919,7 @@ options {
The forwarding facility can be used to create a large site-wide cache on a few servers, reducing traffic over links to external @@ -2962,7 +2963,7 @@ options {
Dual-stack servers are used as servers of last resort to work around @@ -3158,7 +3159,7 @@ options {
The interfaces and ports that the server will answer queries from may be specified using the listen-on option. listen-on takes @@ -3603,7 +3604,7 @@ avoid-v6-udp-ports {};
use-v4-udp-ports, avoid-v4-udp-ports, @@ -3645,7 +3646,7 @@ avoid-v6-udp-ports { 40000; range 50000 60000; };
The server's usage of many system resources can be limited. Scaled values are allowed when specifying resource limits. For @@ -3704,7 +3705,7 @@ avoid-v6-udp-ports { 40000; range 50000 60000; };
The following options set limits on the server's resource consumption that are enforced internally by the @@ -3806,7 +3807,7 @@ avoid-v6-udp-ports { 40000; range 50000 60000; };
@@ -4543,7 +4544,7 @@ avoid-v6-udp-ports { 40000; range 50000 60000; };
The statistics-channels statement @@ -4788,7 +4789,7 @@ avoid-v6-udp-ports { 40000; range 50000 60000; };
trusted-keys {stringnumbernumbernumberstring; [stringnumbernumbernumberstring; [...]] @@ -4797,7 +4798,7 @@ avoid-v6-udp-ports { 40000; range 50000 60000; };The trusted-keys statement defines @@ -4840,7 +4841,7 @@ avoid-v6-udp-ports { 40000; range 50000 60000; };
The view statement is a powerful feature @@ -5099,10 +5100,10 @@ zone
zone_name[