If set, this is a shared secret used for generating and verifying
EDNS COOKIE options within an anycast cluster. If not set, the system
generates a random secret at startup. The shared secret is
- encoded as a hex string and needs to be 128 bits for AES128, 160 bits
- for SHA1, and 256 bits for SHA256.
+ encoded as a hex string and needs to be 128 bits for either "siphash24"
+ or "aes".
If there are multiple secrets specified, the first one listed in
``named.conf`` is used to generate new server cookies. The others