When a domain configuration file contains an include line for the key,
where is that include looking for the key file?
I'm in a situation where the keys seems to work fine for updating
DNSSEC, but nsdiff complains the key file is not found.
@lbutlr <kremels@kreme.com> wrote:Heh.
When a domain configuration file contains an include line for the key,
where is that include looking for the key file?
... good question, I have avoided having to find that out ...
So it sounds like "the current directory" is the answer to your question.That would certainly explain why it fails then.
However, I don't think you need to $INCLUDE key files. I think maybe that used to be a thing when signing a zone had to involve dnssec-signzone? But nowadays even dnssec-signzone will automatically insert public keys intoAh, that would be good. When I resolve the other issue I posted about I will check that.
the signed zone.
Does that make sense?It does, and thank you.
Sysop: | DaiTengu |
---|---|
Location: | Appleton, WI |
Users: | 1,030 |
Nodes: | 10 (0 / 10) |
Uptime: | 86:31:46 |
Calls: | 13,353 |
Calls today: | 2 |
Files: | 186,574 |
D/L today: |
8,718 files (2,173M bytes) |
Messages: | 3,359,164 |