Files
bind9/bin/named
Matthijs Mekking 644f0d958a dnssec-policy: to sign inline or not
When dnssec-policy was introduced, it implicitly set inline-signing.
But DNSSEC maintenance required either inline-signing to be enabled,
or a dynamic zone.  In other words, not in all cases you want to
DNSSEC maintain your zone with inline-signing.

Change the behavior and determine whether inline-signing is
required: if the zone is dynamic, don't use inline-signing,
otherwise implicitly set it.

You can also explicitly set inline-signing to yes with dnssec-policy,
the restriction that both inline-signing and dnssec-policy cannot
be set at the same time is now lifted.

However, 'inline-signing no;' on a non-dynamic zone with a
dnssec-policy is not possible.
2020-04-16 14:22:47 +02:00
..
2020-04-15 13:37:12 +02:00
2019-07-25 08:03:10 -04:00
2020-02-14 09:31:05 +01:00
2020-02-13 15:05:06 -08:00
2020-03-16 09:38:15 +01:00
2020-02-23 20:48:55 -08:00
2020-02-23 20:48:55 -08:00
2020-02-23 20:48:55 -08:00
2020-02-23 20:48:55 -08:00
2020-04-16 14:22:47 +02:00
2020-02-13 15:05:06 -08:00
2020-04-03 09:27:11 +02:00