]> git.ipfire.org Git - thirdparty/bind9.git/commitdiff
Avoid opt-out flag in dnssec-signzone examples
authorPetr Špaček <pspacek@isc.org>
Mon, 18 Jul 2022 11:23:47 +0000 (13:23 +0200)
committerPetr Špaček <pspacek@isc.org>
Thu, 21 Jul 2022 13:19:38 +0000 (15:19 +0200)
Since !6413 we discourage opt-out, so we should not be advertising it in
the examples. Even worse, it was just thrown into the command line
without even mentioning its meaning in the surrounding text.

Related: !6413
(cherry picked from commit beae857288b52ee555bdf41491c5aa2eec390c10)

doc/dnssec-guide/signing.rst

index bcbe2b08f0bbc8c9e271d5afb03ea344d68a2541..ca66204e813ee1a218f7d211bb364773fb441f61 100644 (file)
@@ -1575,7 +1575,7 @@ it is in a file called ``zone.child.example``, using manually specified keys:
 .. code-block:: console
 
    # cd /etc/bind/keys/example.com/
-   # dnssec-signzone -A -t -N INCREMENT -o example.com -f /etc/bind/db/example.com.signed.db \
+   # dnssec-signzone -t -N INCREMENT -o example.com -f /etc/bind/db/example.com.signed.db \
        /etc/bind/db/example.com.db Kexample.com.+013+17694.key Kexample.com.+013+06817.key
    Verifying the zone using the following algorithms: ECDSAP256SHA256.
    Zone fully signed: