Project

General

Profile

Task #2701

ndns-add-rr enables special handling for self-signed KSK

Added by Jiewen Tan almost 6 years ago. Updated almost 6 years ago.

Status:
Code review
Priority:
Normal
Assignee:
Target version:
Start date:
03/26/2015
Due date:
% Done:

0%

Estimated time:

Description

In current design, all self-signed certificate will be resigned by the current zone's dsk if added as a file. Therefore, it is not possible to add root certificate to the database. Hence, an option is added to suppress the resigning process.

#1

Updated by Jiewen Tan almost 6 years ago

  • Status changed from In Progress to Code review
#2

Updated by Alex Afanasyev almost 6 years ago

First, i wouldn't call it "root" certificate. Second, I would, actually, do the opposite. By default, anything that is imported from file is getting inserted as is. If some flag is specified (I think it could be --dsk), then the tool will do the signing.

#3

Updated by Jiewen Tan almost 6 years ago

  • Subject changed from ndns-add-rr allows self-signed certificate to be added as root certificate to ndns-add-rr enables special handling for self-signed KSK

Also available in: Atom PDF