]> git.ipfire.org Git - thirdparty/bind9.git/commit
2842. [func] Prevent dnssec-keygen and dnssec-keyfromlabel from
authorEvan Hunt <each@isc.org>
Tue, 19 Jan 2010 20:26:07 +0000 (20:26 +0000)
committerEvan Hunt <each@isc.org>
Tue, 19 Jan 2010 20:26:07 +0000 (20:26 +0000)
commit8a198fa776a09beb4dabf40b73a54d9c7bd70ac9
treeb91160000d8f75d6495d4867775b79ffdd3a32a0
parent1aa8830b74c9db651bb64c946938d8d008468f39
2842. [func] Prevent dnssec-keygen and dnssec-keyfromlabel from
creating key files if there is a chance that the new
key ID will collide with an existing one after
either of the keys has been revoked.  (To override
this in the case of dnssec-keyfromlabel, use the -y
option.  dnssec-keygen will simply create a
different, noncolliding key, so an override is
not necessary.) [RT #20838]
CHANGES
bin/dnssec/dnssec-keyfromlabel.c
bin/dnssec/dnssec-keyfromlabel.docbook
bin/dnssec/dnssec-keygen.c
bin/dnssec/dnssectool.c
bin/dnssec/dnssectool.h