Hi Sebastian, > So it seems that there is some sort of problem while transitioning > between states? Any idea what is going on?
Yes, I think you had a standby key in your 1.4 setup. 2.1 doesn't know about this. It is not really doing a KSK rollover but it just so happens to have to KSKs and it is coping with that. To solve this start a KSK rollover: ods-enforcer key rollover -z 6v6.de -t KSK This should introduce a new key while also marking the two existing keys as old. They will then be replaced by the new key. //Yuri
signature.asc
Description: OpenPGP digital signature
_______________________________________________ Opendnssec-user mailing list [email protected] https://lists.opendnssec.org/mailman/listinfo/opendnssec-user
