Prevent intermittent false positives on slow platforms by subtracting the number of seconds which passed between key creation and invoking 'rndc dnssec -checkds'. This particularly fails for the step3.csk-roll2.autosign zone because the closest next key event is when the zone signatures become omnipresent. Running 'rndc dnssec -checkds' some time later means that the next key event is in fact closer than the calculated time and thus we need to adjust the expected time by the time already passed.
Copyright (C) Internet Systems Consortium, Inc. ("ISC")
See COPYRIGHT in the source root or http://isc.org/copyright.html for terms.
The test setup for the KASP tests.
ns1 is reserved for the root server.
ns2 is running primary service for ns3.
ns3 is an authoritative server for the various test domains.
ns4 and ns5 are authoritative servers for various test domains related to views.
ns6 is an authoritative server that tests changes in dnssec-policy.