Uploaded image for project: 'OpenDNSSEC Pivotal History'
  1. OpenDNSSEC Pivotal History
  2. ODSPTHIST-600

Not updating TTL of DNSKEY RRset

FinishDeliverReject
    XMLWordPrintable

    Details

      Description

      The TTL of the DNSKEY RRset is not updated in the signed zone

      Start signing your zone.
      Change the DNSKEY TTL in signconf.
      sudo ods-signer update se
      Check syslog that it has this new value.

      Jun 26 06:27:57 fou ods-signerd: [signconf] zone se signconf: RESIGN[PT300S] REFRESH[PT600S] VALIDITY[PT1800S] DENIAL[PT1800S] JITTER[PT300S] OFFSET[PT300S] NSEC[47] DNSKEYTTL[PT3600S] SOATTL[PT60S] MINIMUM[PT60S] SERIAL[unixtime] AUDIT[0]

      But the signed zone will not get this value.

        Attachments

          Activity

            People

            Assignee:
            matthijs Matthijs Mekking
            Reporter:
            rickard Rickard Bellgrim
            Votes:
            0 Vote for this issue
            Watchers:
            0 Start watching this issue

              Dates

              Created:
              Updated:
              Resolved: