]> git.ipfire.org Git - thirdparty/bind9.git/commit
Rekey immediately after rndc checkds/rollover
authorMatthijs Mekking <matthijs@isc.org>
Wed, 17 Mar 2021 14:57:34 +0000 (15:57 +0100)
committerMatthijs Mekking <matthijs@isc.org>
Mon, 22 Mar 2021 10:58:26 +0000 (11:58 +0100)
commit82f72ae2497ecea4966189cd2db02458a20dc07a
tree06a9676e82c8be13df809bf85f3ed92cc8c8007d
parent28923bc6952ff273b30c69dcbef0b9aeebf5a5c6
Rekey immediately after rndc checkds/rollover

Call 'dns_zone_rekey' after a 'rndc dnssec -checkds' or 'rndc dnssec
-rollover' command is received, because such a command may influence
the next key event. Updating the keys immediately avoids unnecessary
rollover delays.

The kasp system test no longer needs to call 'rndc loadkeys' after
a 'rndc dnssec -checkds' or 'rndc dnssec -rollover' command.
CHANGES
bin/named/server.c
bin/tests/system/kasp.sh
doc/notes/notes-current.rst