]> git.ipfire.org Git - thirdparty/bind9.git/commitdiff
Avoid opt-out flag in dnssec-signzone examples
authorPetr Špaček <pspacek@isc.org>
Mon, 18 Jul 2022 11:23:47 +0000 (13:23 +0200)
committerPetr Špaček <pspacek@isc.org>
Thu, 21 Jul 2022 13:18:55 +0000 (15:18 +0200)
Since !6413 we discourage opt-out, so we should not be advertising it in
the examples. Even worse, it was just thrown into the command line
without even mentioning its meaning in the surrounding text.

Related: !6413
(cherry picked from commit beae857288b52ee555bdf41491c5aa2eec390c10)

doc/dnssec-guide/signing.rst

index 6adb9f017471d3aa0d270133f9135d43f5e4a08b..7fb8e147deba5d437d5d5a48063a80fb73dbc862 100644 (file)
@@ -1402,7 +1402,7 @@ it is in a file called ``zone.child.example``, using manually specified keys:
 .. code-block:: console
 
    # cd /etc/bind/keys/example.com/
-   # dnssec-signzone -A -t -N INCREMENT -o example.com -f /etc/bind/db/example.com.signed.db \
+   # dnssec-signzone -t -N INCREMENT -o example.com -f /etc/bind/db/example.com.signed.db \
        /etc/bind/db/example.com.db Kexample.com.+013+17694.key Kexample.com.+013+06817.key
    Verifying the zone using the following algorithms: ECDSAP256SHA256.
    Zone fully signed: