Hello,

Yes you can define below configurations in your options:


       inline-signing yes;​

This configuration automates your signing zone tasks as whenever you change, 
add, delete your records or signature expired, named automatically re-sign your 
zone data with the keys in your key-directory.​

        ​

       auto-dnssec maintain;​

This is for the automated key management. With this option enabled, named will 
periodically check if there are new key available, or expired key and manage 
DNSKEY records. It's very helpful when you renew your keys.


Have a nice day :)
BR, NYAMKHAND Buluukhuu

Engineer
TPD/ETSD

UNESCO street - 28, MPM Complex

Ulaanbaatar -14220, Mongolia

Mobile:   (976) 94081017
Web:       www.mobicom.mn<http://www.newcom.mn/>

Before you start - Be safety smart

[cid:a4d66a69-69bf-434d-842c-f5bc1739cc6c]


________________________________
From: bind-users <bind-users-boun...@lists.isc.org> on behalf of rams 
<brames...@gmail.com>
Sent: Monday, November 2, 2020 2:14 PM
To: bind-users <bind-us...@isc.org>
Subject: auto RRSIG enable

Hi,
Do we need to set any option in named.conf for auto RRSIG generation in bind?
Can anyone help me on this.

Regards,
Ramesh
_______________________________________________
Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe 
from this list

ISC funds the development of this software with paid support subscriptions. 
Contact us at https://www.isc.org/contact/ for more information.


bind-users mailing list
bind-users@lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users

Reply via email to