Uploaded image for project: 'OpenDNSSEC'
  1. OpenDNSSEC
  2. OPENDNSSEC-271

Signconf with no keys

    XMLWordPrintable

    Details

    • Type: Bug
    • Status: Closed
    • Priority: Minor
    • Resolution: Fixed
    • Affects Version/s: 2.0.0
    • Fix Version/s: 2.0.0
    • Component/s: Enforcer NG
    • Labels:

      Description

      I had a policy which the enforcer did not like, thus not inserting the key in the zone. It will however create the signconf, which now contains no keys. The signer does not like this as it is not following the XML schema. The enforcer should check if there are any keys before writing the signconf or we should adjust the XML schema.

      Jun 4 11:18:24 ubuntu ods-enforcerd: [enforcer] updatePolicy Key lifetime unreasonably short with respect to TTL. Will not insert key!

      /var/opendnssec/signconf/bellgrim.se.xml:18: element Keys: Relax-NG validity error : Expecting an element , got nothing

        Attachments

          Activity

            People

            Assignee:
            yuri Yuri Schaeffer
            Reporter:
            rickard Rickard Bellgrim
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

              Dates

              Created:
              Updated:
              Resolved: