Project

General

Profile

Actions

Task #2701

open

ndns-add-rr enables special handling for self-signed KSK

Added by Jiewen Tan about 9 years ago. Updated about 9 years ago.

Status:
Code review
Priority:
Normal
Assignee:
Target version:
Start date:
03/26/2015
Due date:
% Done:

0%

Estimated time:

Description

In current design, all self-signed certificate will be resigned by the current zone's dsk if added as a file. Therefore, it is not possible to add root certificate to the database. Hence, an option is added to suppress the resigning process.

Actions #1

Updated by Jiewen Tan about 9 years ago

  • Status changed from In Progress to Code review
Actions #2

Updated by Alex Afanasyev about 9 years ago

First, i wouldn't call it "root" certificate. Second, I would, actually, do the opposite. By default, anything that is imported from file is getting inserted as is. If some flag is specified (I think it could be --dsk), then the tool will do the signing.

Actions #3

Updated by Jiewen Tan about 9 years ago

  • Subject changed from ndns-add-rr allows self-signed certificate to be added as root certificate to ndns-add-rr enables special handling for self-signed KSK
Actions

Also available in: Atom PDF