]> git.ipfire.org Git - thirdparty/bind9.git/commit
2842. [func] Prevent dnssec-keygen and dnssec-keyfromlabel from
authorEvan Hunt <each@isc.org>
Tue, 19 Jan 2010 20:25:49 +0000 (20:25 +0000)
committerEvan Hunt <each@isc.org>
Tue, 19 Jan 2010 20:25:49 +0000 (20:25 +0000)
commit5cd5eceba015ba42b97d5132f63cef83598eb18d
tree4ded6c5b77a2ad311f6b0b44690c7a8bdb586b1f
parentcf4e5a73a536f6ba5ca02859da34b69b3fa1a0cf
2842. [func] Prevent dnssec-keygen and dnssec-keyfromlabel from
creating key files if there is a chance that the new
key ID will collide with an existing one after
either of the keys has been revoked.  (To override
this in the case of dnssec-keyfromlabel, use the -y
option.  dnssec-keygen will simply create a
different, noncolliding key, so an override is
not necessary.) [RT #20838]
CHANGES
bin/dnssec/dnssec-keyfromlabel.c
bin/dnssec/dnssec-keyfromlabel.docbook
bin/dnssec/dnssec-keygen.c
bin/dnssec/dnssectool.c
bin/dnssec/dnssectool.h