Change test configuration to make use of 'dnssec-policy' instead of
'auto-dnssec'.
inet 10.53.0.1 port @CONTROLPORT@ allow { any; } keys { rndc_key; };
};
+dnssec-policy "masterformat" {
+ keys {
+ ksk key-directory lifetime unlimited algorithm @DEFAULT_ALGORITHM@;
+ zsk key-directory lifetime unlimited algorithm @DEFAULT_ALGORITHM@;
+ };
+};
+
zone "example" {
type primary;
masterfile-format raw;
masterfile-format raw;
allow-transfer { any; };
update-policy local;
- auto-dnssec maintain;
+ dnssec-policy masterformat;
};