Subject: | CDS & CDNSKEY integration with in-line signing |
Date: | Wed, 05 Nov 2014 17:43:45 +0100 |
To: | bind-suggest@isc.org |
From: | Petr Spacek <pspacek@redhat.com> |
Hello,
I have seen that support for CDS and CDNSKEY resource record types was added
to BIND 9.10.
It would be great if in-line signing could automatically add/manage
CDS/CDNSKEY records according to timestamps in the key files.
I suspect that it could be a zone-knob like child-dnssec-sync: none | ds |
dnskey | both; or something like that.
Have a nice day!
--
Petr Spacek @ Red Hat