> after a 'ods-ksmutil backup prepare' ods-ksmutil is part of OpenDNSSEC 1.4 and no longer exists in 2.1...
>and a 'ods-enforcer backup commit' (and a ods restart) it worked, and I got an >e-mail with the new KSK key. Good. //Yuri PS. It seems you are only telling OpenDNSSEC you backed up the key without doing so (on your HSM). If you don't actually care for backups remove the <RequireBackup/> from the OpenDNSSEC configuration.
signature.asc
Description: OpenPGP digital signature
_______________________________________________ Opendnssec-user mailing list [email protected] https://lists.opendnssec.org/mailman/listinfo/opendnssec-user
