There are active and ready keys:
# ods-enforcer key list --zone KVI.nl
Keys:
Zone: Keytype: State: Date of next transition:
KVI.nl KSK retire 2016-08-12 16:33:10
KVI.nl ZSK active 2016-08-12 16:33:10
KVI.nl ZSK ready 2016-08-12 16:33:10
KVI.nl KSK active 2016-08-12 16:33:10
key list completed in 0 seconds.
# ods-enforcer key export --zone KVI.nl
key export completed in 0 seconds.
#
-----Oorspronkelijk bericht-----
From: Hoda Rohani
Sent: Tuesday, August 9, 2016 4:50 PM
To: Fred.Zwarts ; opendnssec-user@lists.opendnssec.org
Subject: Re: [Opendnssec-user] key export in ods 2.0.1
Hello Fred,
key export command returns ready and active KSKs by default. It seems your
KSKs are not in those states.
If you want to export other keys you can explicitly specify key state or key
type.
key export
--zone <zone> | --all
[--keystate <state>]
[--keytype <type>]
[--ds]
Regards,
Hoda Rohani
On 09-08-16 16:37, Fred.Zwarts wrote:
After the first impression, mentioned in my previous mail, I continued to
adapt some scripts. I like very much the
--parsable option of ods-enforcer.
There is something that I do not understand. I was used to parse the
output of "ods-ksmutil key export --zone
KVI.nl", but now the command "ods-enforcer key export --zone KVI.nl" does
not produce any output on the screen,
except the line "key export completed in 0 seconds". Where can I find the
exported keys?
_______________________________________________ Opendnssec-user mailing
list Opendnssec-user@lists.opendnssec.org
https://lists.opendnssec.org/mailman/listinfo/opendnssec-usereg
_______________________________________________
Opendnssec-user mailing list
Opendnssec-user@lists.opendnssec.org
https://lists.opendnssec.org/mailman/listinfo/opendnssec-user