dnssec-keygen.html revision 89da2a56413ba6294315bdde04f7547b9d71b062
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore - Copyright (C) 2004 Internet Systems Consortium, Inc. ("ISC")
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore - Copyright (C) 2001-2003 Internet Software Consortium.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore - Permission to use, copy, modify, and distribute this software for any
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore - purpose with or without fee is hereby granted, provided that the above
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore - copyright notice and this permission notice appear in all copies.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore - THE SOFTWARE IS PROVIDED "AS IS" AND ISC DISCLAIMS ALL WARRANTIES WITH
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore - REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF MERCHANTABILITY
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore - AND FITNESS. IN NO EVENT SHALL ISC BE LIABLE FOR ANY SPECIAL, DIRECT,
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore - INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore - LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore - OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore - PERFORMANCE OF THIS SOFTWARE.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore<!-- $Id: dnssec-keygen.html,v 1.15 2005/04/03 03:31:32 marka Exp $ -->
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore>dnssec-keygen</TITLE
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreNAME="GENERATOR"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCONTENT="Modular DocBook HTML Stylesheet Version 1.79"></HEAD
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REFENTRY"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreBGCOLOR="#FFFFFF"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreTEXT="#000000"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreLINK="#0000FF"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreVLINK="#840084"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreALINK="#0000FF"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="APPLICATION"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore>dnssec-keygen</SPAN
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REFNAMEDIV"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="APPLICATION"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore>dnssec-keygen</SPAN
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> -- DNSSEC key generation tool</DIV
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REFSYNOPSISDIV"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="COMMAND"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore>dnssec-keygen</B
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="OPTION"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="OPTION"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="OPTION"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="OPTION"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="OPTION"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="OPTION"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="OPTION"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="OPTION"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="OPTION"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="OPTION"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="OPTION"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REFSECT1"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore>DESCRIPTION</H2
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="COMMAND"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore>dnssec-keygen</B
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> generates keys for DNSSEC
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore (Secure DNS), as defined in RFC 2535 and RFC <TBA\>. It can also generate
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore keys for use with TSIG (Transaction Signatures), as
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore defined in RFC 2845.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REFSECT1"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="VARIABLELIST"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> Selects the cryptographic algorithm. The value of
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="OPTION"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore>algorithm</CODE
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> must be one of RSAMD5 (RSA) or RSASHA1,
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore DSA, DH (Diffie Hellman), or HMAC-MD5. These values
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore are case insensitive.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> Note 1: that for DNSSEC, RSASHA1 is a mandatory to implement algorithm,
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore and DSA is recommended. For TSIG, HMAC-MD5 is mandatory.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> Note 2: HMAC-MD5 and DH automatically set the -k flag.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> Specifies the number of bits in the key. The choice of key
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore size depends on the algorithm used. RSAMD5 / RSASHA1 keys must be between
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore 512 and 2048 bits. Diffie Hellman keys must be between
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore 128 and 4096 bits. DSA keys must be between 512 and 1024
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore bits and an exact multiple of 64. HMAC-MD5 keys must be
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore between 1 and 512 bits.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> Specifies the owner type of the key. The value of
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="OPTION"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore>nametype</CODE
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> must either be ZONE (for a DNSSEC
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore zone key (KEY/DNSKEY)), HOST or ENTITY (for a key associated with a host (KEY)),
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore USER (for a key associated with a user(KEY)) or OTHER (DNSKEY). These values are
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore case insensitive.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> Indicates that the DNS record containing the key should have
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore the specified class. If not specified, class IN is used.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> If generating an RSAMD5/RSASHA1 key, use a large exponent.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> Set the specified flag in the flag field of the KEY/DNSKEY record.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore The only recognized flag is KSK (Key Signing Key) DNSKEY.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> If generating a Diffie Hellman key, use this generator.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore Allowed values are 2 and 5. If no generator
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore is specified, a known prime from RFC 2539 will be used
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore if possible; otherwise the default is 2.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> Prints a short summary of the options and arguments to
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="COMMAND"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore>dnssec-keygen</B
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> Generate KEY records rather than DNSKEY records.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> Sets the protocol value for the generated key. The protocol
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore is a number between 0 and 255. The default is 3 (DNSSEC).
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore Other possible values for this argument are listed in
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore RFC 2535 and its successors.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> Specifies the source of randomness. If the operating
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore system does not provide a <TT
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="FILENAME"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore or equivalent device, the default source of randomness
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore is keyboard input. <TT
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="FILENAME"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore>randomdev</TT
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore the name of a character device or file containing random
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore data to be used instead of the default. The special value
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="FILENAME"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> indicates that keyboard
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore input should be used.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> Specifies the strength value of the key. The strength is
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore a number between 0 and 15, and currently has no defined
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore purpose in DNSSEC.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> Indicates the use of the key. <CODE
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="OPTION"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore one of AUTHCONF, NOAUTHCONF, NOAUTH, or NOCONF. The default
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore is AUTHCONF. AUTH refers to the ability to authenticate
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore data, and CONF the ability to encrypt data.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REPLACEABLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> Sets the debugging level.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REFSECT1"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore>GENERATED KEYS</H2
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="COMMAND"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore>dnssec-keygen</B
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> completes successfully,
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore it prints a string of the form <TT
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="FILENAME"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore>Knnnn.+aaa+iiiii</TT
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore to the standard output. This is an identification string for
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore the key it has generated. These strings can be used as arguments
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="COMMAND"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore>dnssec-makekeyset</B
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="FILENAME"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> is the key name.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="FILENAME"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> is the numeric representation of the
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="FILENAME"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> is the key identifier (or footprint).
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="COMMAND"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore>dnssec-keygen</B
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> creates two file, with names based
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore on the printed string. <TT
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="FILENAME"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore contains the public key, and
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="FILENAME"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> contains the private
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="FILENAME"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> file contains a DNS KEY record that
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore can be inserted into a zone file (directly or with a $INCLUDE
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="FILENAME"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> file contains algorithm specific
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore fields. For obvious security reasons, this file does not have
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore general read permission.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="FILENAME"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="FILENAME"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore files are generated for symmetric encryption algorithm such as
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore HMAC-MD5, even though the public and private key are equivalent.
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REFSECT1"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> To generate a 768-bit DSA key for the domain
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="USERINPUT"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore>, the following command would be
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="USERINPUT"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore>dnssec-keygen -a DSA -b 768 -n ZONE example.com</KBD
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> The command would print a string of the form:
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="USERINPUT"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> In this example, <B
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="COMMAND"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore>dnssec-keygen</B
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore the files <TT
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="FILENAME"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="FILENAME"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REFSECT1"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="CITEREFENTRY"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REFENTRYTITLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore>dnssec-signzone</SPAN
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="CITETITLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore>BIND 9 Administrator Reference Manual</I
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="CITETITLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="CITETITLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="CITETITLE"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'AmoreCLASS="REFSECT1"
2da1cd3a39e2d3da7f9d15071ea9462919c011acGarrett D'Amore> Internet Systems Consortium