-
Type:
Improvement
-
Status: Resolved
-
Priority:
Minor
-
Resolution: Fixed
-
Affects Version/s: None
-
Fix Version/s: 2.0.0
-
Component/s: Enforcer NG
-
Labels:None
-
Epic Link:
-
Sprint:2.0.0a4
Could we log in syslog when a new KSK is generated to alert the user that they need to take manual action?
For example in 1.4 I see:
Feb 11 16:57:57 sara-ods ods-enforcerd: DS Record set has changed, the current set looks like:
Feb 11 16:57:57 sara-ods ods-enforcerd: ods. 600 IN DNSKEY 257 3 7 AwEAAcKWcAMGAotqvecVhHyHUtZerBdY5c9bqKIBQi1HMCwUOCnK/zJDXcU+qha3XJpazdWVQHGoJLkca4D431koXY408+iTAdk/SCNqGI3BgwcFFSvRcNpUPQIYQj2Qj4giur1QaBiPN4UTxnUD7FA8lCowCSSR3cGJszKvV+pY85BsgSK0V0CcbcOn/2oBgFvtevecJjfLwFFBXDO1+Ou8f98N0TEjqoecdau3eKvtfcrTHjvKUkeYT1cnyJpaewJlxTTqgGuQ/t6/A3GUGz4opUfqvozdSQ03RMixvw9cExrf+ivFPRfzXlDv2Y/aMuuuesjMnbQ8iz2Df/G6tQz2TuU= ;
Feb 11 16:57:57 sara-ods ods-enforcerd: Once the new DS records are seen in DNS please issue the ds-seen command for zone ods with the following cka_ids, 4260157feb8e04f3823e3faef492b357