6238N/A - Copyright (C) 2004 Internet Systems Consortium, Inc. ("ISC") 6238N/A - Copyright (C) 2001, 2003 Internet Software Consortium. 6238N/A - Permission to use, copy, modify, and distribute this software for any 6238N/A - purpose with or without fee is hereby granted, provided that the above 6238N/A - copyright notice and this permission notice appear in all copies. 6983N/A - THE SOFTWARE IS PROVIDED "AS IS" AND ISC DISCLAIMS ALL WARRANTIES WITH 6983N/A - REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF MERCHANTABILITY 6238N/A - AND FITNESS. IN NO EVENT SHALL ISC BE LIABLE FOR ANY SPECIAL, DIRECT, 6238N/A - INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM 6238N/A - LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE 6238N/A - OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR 6983N/A - PERFORMANCE OF THIS SOFTWARE. 6238N/ACONTENT="Modular DocBook HTML Stylesheet Version 1.61 6238N/A> -- DNSSEC key set signing tool</
DIV 6238N/A the keyset will be for a child zone, and will have been generated
6238N/A is signed with the zone keys for its parent zone. The output file
6718N/A> Verify all generated signatures.
6238N/A> Specifies the DNS class of the key sets.
6238N/A> Specify the date and time when the generated SIG records
6718N/A become valid. This can be either an absolute or relative
6238N/A time. An absolute start time is indicated by a number
6238N/A in YYYYMMDDHHMMSS notation; 20000530144500 denotes
6238N/A 14:45:00 UTC on May 30th, 2000. A relative start time is
6238N/A indicated by +N, which is N seconds from the current time.
6238N/A> Specify the date and time when the generated SIG records
6238N/A time is indicated in YYYYMMDDHHMMSS notation. A time relative
6238N/A to the start time is indicated with +N, which is N seconds from
6718N/A the start time. A time realtive to the current time is
6238N/A indicated with now+N. If no <
TT 6238N/A specified, 30 days from the start time is used as a default.
6238N/A> Prints a short summary of the options and arguments to
6238N/A> Use pseudo-random data when signing the zone. This is faster,
6238N/A but less secure, than using real random data. This option
6238N/A may be useful when signing large zones or when the entropy
6238N/A> Specifies the source of randomness. If the operating
6238N/A system does not provide a <
TT 6238N/A or equivalent device, the default source of randomness
6238N/A the name of a character device or file containing random
6238N/A data to be used instead of the default. The special value
> The file containing the child's keyset.
> The keys used to sign the child's keyset.
> The DNS administrator for a DNSSEC-aware <
TT zone would use the following command to sign the
> Internet Software Consortium