Scott Armitage wrote: > However from reading documentation it seems like OpenDNSSEC doesn't do the > final 2 steps; Send NOTIFY messages, and AXFR to requesting Slaves. It seems > like you need to run a DNS Server on the same box as the OpenDNSSEC, ODS > then triggers the rebuilding of the DNS once it has signed the zone: >
This is correct. Your selected command can do any number of things with the signed zonefile.. in our case, we scp it to hidden masters and tell those to reload the zone.
signature.asc
Description: OpenPGP digital signature
_______________________________________________ Opendnssec-user mailing list [email protected] https://lists.opendnssec.org/mailman/listinfo/opendnssec-user
