1. 28 Oct, 2009 1 commit
  2. 27 Oct, 2009 1 commit
  3. 24 Oct, 2009 2 commits
  4. 22 Oct, 2009 1 commit
  5. 12 Oct, 2009 1 commit
    • Evan Hunt's avatar
      2712. [func] New 'auto-dnssec' zone option allows zone signing · 77b8f88f
      Evan Hunt authored
      			to be fully automated in zones configured for
      			dynamic DNS.  'auto-dnssec allow;' permits a zone
      			to be signed by creating keys for it in the
      			key-directory and using 'rndc sign <zone>'.
      			'auto-dnssec maintain;' allows that too, plus it
      			also keeps the zone's DNSSEC keys up to date
      			according to their timing metadata. [RT #19943]
      77b8f88f
  6. 06 Oct, 2009 1 commit
  7. 05 Oct, 2009 1 commit
  8. 03 Oct, 2009 1 commit
  9. 29 Sep, 2009 1 commit
  10. 23 Sep, 2009 1 commit
  11. 14 Sep, 2009 1 commit
    • Evan Hunt's avatar
      2677. [func] Changes to key metadata behavior: · b843f577
      Evan Hunt authored
      			- Keys without "publish" or "active" dates set will
      			  no longer be used for smart signing.  However,
      			  those dates will be set to "now" by default when
      			  a key is created; to generate a key but not use
      			  it yet, use dnssec-keygen -G.
      			- New "inactive" date (dnssec-keygen/settime -I)
      			  sets the time when a key is no longer used for
      			  signing but is still published.
      			- The "unpublished" date (-U) is deprecated in
      			  favor of "deleted" (-D).
      			[rt20247]
      b843f577
  12. 07 Sep, 2009 1 commit
  13. 04 Sep, 2009 1 commit
    • Evan Hunt's avatar
      RT #20213: · 8d0a1ede
      Evan Hunt authored
      - correctly use -K option in dnssec-keygen
      - fix an improper free() in dnssec-revoke
      - fix grammar in dnssec-settime
      8d0a1ede
  14. 02 Sep, 2009 2 commits
  15. 01 Sep, 2009 1 commit
  16. 19 Jul, 2009 2 commits
    • Automatic Updater's avatar
      update copyright notice · 26d8ffe7
      Automatic Updater authored
      26d8ffe7
    • Evan Hunt's avatar
      2636. [func] Simplify zone signing and key maintenance with the · 553ead32
      Evan Hunt authored
      			dnssec-* tools.  Major changes:
      			- all dnssec-* tools now take a -K option to
      			  specify a directory in which key files will be
      			  stored
      			- DNSSEC can now store metadata indicating when
      			  they are scheduled to be published, acttivated,
      			  revoked or removed; these values can be set by
      			  dnssec-keygen or overwritten by the new
      			  dnssec-settime command
      			- dnssec-signzone -S (for "smart") option reads key
      			  metadata and uses it to determine automatically
      			  which keys to publish to the zone, use for
      			  signing, revoke, or remove from the zone
      			[RT #19816]
      553ead32
  17. 30 Jun, 2009 2 commits
  18. 17 Jun, 2009 2 commits
  19. 07 May, 2009 2 commits
  20. 25 Sep, 2008 1 commit
  21. 24 Sep, 2008 1 commit
  22. 28 Aug, 2007 1 commit
  23. 18 Jun, 2007 2 commits
  24. 21 May, 2007 1 commit
  25. 09 Jan, 2007 2 commits
  26. 27 Jan, 2006 1 commit
  27. 04 Jan, 2006 1 commit
  28. 03 Jan, 2006 1 commit
  29. 18 Sep, 2005 1 commit
  30. 29 Apr, 2005 1 commit
  31. 27 Apr, 2005 1 commit
  32. 11 Jun, 2004 1 commit