> In our case "dnssec-ds formkey" is not available.

What about
        $ dig +noall +answer +multi DNSKEY $zone |
        > sed -n '/key id/s/^.*= //p'
for all keys, or

        $ dig +noall +answer +multi DNSKEY $zone |
        > sed -n '/KSK/s/^.*= //p'
if you only want to see the key id of the KSK.

Holger

Attachment: smime.p7s
Description: S/MIME cryptographic signature

_______________________________________________
dns-operations mailing list
dns-operations@lists.dns-oarc.net
https://lists.dns-oarc.net/mailman/listinfo/dns-operations
dns-jobs mailing list
https://lists.dns-oarc.net/mailman/listinfo/dns-jobs

Reply via email to