Welcome to Linux Knowledge Base and Tutorial
"The place where you learn linux"
International Medical Corps

 Create an AccountHome | Submit News | Your Account  

Tutorial Menu
Linux Tutorial Home
Table of Contents

· Introduction to Operating Systems
· Linux Basics
· Working with the System
· Shells and Utilities
· Editing Files
· Basic Administration
· The Operating System
· The X Windowing System
· The Computer Itself
· Networking
· System Monitoring
· Solving Problems
· Security
· Installing and Upgrading
· Linux and Windows

Glossary
MoreInfo
Man Pages
Linux Topics
Test Your Knowledge

Site Menu
Site Map
FAQ
Copyright Info
Terms of Use
Privacy Info
Disclaimer
WorkBoard
Thanks
Donations
Advertising
Masthead / Impressum
Your Account

Communication
Feedback
Forums
Private Messages
Surveys

Features
HOWTOs
News Archive
Submit News
Topics
User Articles
Web Links

Google
Google


The Web
linux-tutorial.info

Who's Online
There are currently, 85 guest(s) and 0 member(s) that are online.

You are an Anonymous user. You can register for free by clicking here

  

dnssec-makekeyset



SYNOPSIS

       dnssec-makekeyset [ -a ]  [ -s start-time ]  [ -e end-time
       ]  [ -h ]  [ -p ]  [ -r randomdev ]  [ -tttl ]  [ -v level
       ]  key...


DESCRIPTION

       dnssec-makekeyset  generates  a  key  set from one or more
       keys created by dnssec-keygen. It creates a file  contain­
       ing  a KEY record for each key, and self-signs the key set
       with each zone key. The output file is of the form keyset-
       nnnn., where nnnn is the zone name.


OPTIONS

       -a     Verify all generated signatures.

       -s start-time
              Specify  the  date  and time when the generated SIG
              records become valid. This can be either  an  abso­
              lute  or  relative  time. An absolute start time is
              indicated by a number in  YYYYMMDDHHMMSS  notation;
              20000530144500  denotes  14:45:00  UTC on May 30th,
              2000. A relative start time  is  indicated  by  +N,
              which  is  N  seconds from the current time.  If no
              start-time is specified, the current time is  used.

       -e end-time
              Specify  the  date  and time when the generated SIG
              records expire. As  with  start-time,  an  absolute
              time  is  indicated  in  YYYYMMDDHHMMSS notation. A
              time relative to the start time is  indicated  with
              +N,  which is N seconds from the start time. A time
              relative to the  current  time  is  indicated  with
              now+N.  If  no  end-time is specified, 30 days from
              the start time is used as a default.

       -h     Prints a short summary of the options and arguments
              to dnssec-makekeyset.

       -p     Use  pseudo-random data when signing the zone. This
              is faster, but less secure, than using real  random
              data.  This option may be useful when signing large
              zones or when the entropy source is limited.

       -r randomdev
              Specifies the source of randomness. If the  operat­
              ing system does not provide a /dev/random or equiv­
              alent device, the default source of  randomness  is
              keyboard  input.  randomdev specifies the name of a
              character device or file containing random data  to
              be  used  instead of the default. The special value
              keyboard indicates that keyboard  input  should  be
              used.

       page.

       dnssec-makekeyset -t 86400 -s 20000701120000  -e  +2592000
       Kexample.com.+003+26160

       In  this  example, dnssec-makekeyset creates the file key­
       set-example.com.. This file contains the specified key and
       a self-generated signature.

       The  DNS  administrator for example.com could send keyset-
       example.com. to the DNS administrator for .com  for  sign­
       ing,  if the .com zone is DNSSEC-aware and the administra­
       tors of the two zones have some mechanism for authenticat­
       ing  each  other  and  exchanging  the keys and signatures
       securely.


SEE ALSO

       dnssec-keygen(8), dnssec-signkey(8), BIND 9  Administrator
       Reference Manual, RFC 2535.


AUTHOR

       Internet Software Consortium

BIND9                     June 30, 2000      DNSSEC-MAKEKEYSET(8)

An undefined database error occurred. SELECT distinct pages.pagepath,pages.pageid FROM pages, page2command WHERE pages.pageid = page2command.pageid AND commandid =


  
Help us cut cost by not downloading the whole site!
Use of automated download sofware ("harvesters") such as wget, httrack, etc. causes the site to quickly exceed its bandwidth limitation and therefore is expressedly prohibited. For more details on this, take a look here

Login
Nickname

Password

Security Code
Security Code
Type Security Code


Don't have an account yet? You can create one. As a registered user you have some advantages like theme manager, comments configuration and post comments with your name.

Help if you can!


Amazon Wish List

Did You Know?
You can choose larger fonts by selecting a different themes.


Friends



Tell a Friend About Us

Bookmark and Share



Web site powered by PHP-Nuke

Is this information useful? At the very least you can help by spreading the word to your favorite newsgroups, mailing lists and forums.
All logos and trademarks in this site are property of their respective owner. The comments are property of their posters. Articles are the property of their respective owners. Unless otherwise stated in the body of the article, article content (C) 1994-2013 by James Mohr. All rights reserved. The stylized page/paper, as well as the terms "The Linux Tutorial", "The Linux Server Tutorial", "The Linux Knowledge Base and Tutorial" and "The place where you learn Linux" are service marks of James Mohr. All rights reserved.
The Linux Knowledge Base and Tutorial may contain links to sites on the Internet, which are owned and operated by third parties. The Linux Tutorial is not responsible for the content of any such third-party site. By viewing/utilizing this web site, you have agreed to our disclaimer, terms of use and privacy policy. Use of automated download software ("harvesters") such as wget, httrack, etc. causes the site to quickly exceed its bandwidth limitation and are therefore expressly prohibited. For more details on this, take a look here

PHP-Nuke Copyright © 2004 by Francisco Burzi. This is free software, and you may redistribute it under the GPL. PHP-Nuke comes with absolutely no warranty, for details, see the license.
Page Generation: 0.07 Seconds