This Source Code Form is subject to the terms of the Mozilla Public
License, v. 2.0. If a copy of the MPL was not distributed with this
file, You can obtain one at http://mozilla.org/MPL/2.0/.
t
Title: dnssec-checkds
Author:
Generator: DocBook XSL Stylesheets v1.78.1 <http://docbook.sf.net/>
Date: 2013-01-01
Manual: BIND9
Source: ISC
Language: English
* Define some portability stuff
-----------------------------------------------------------------
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
http://bugs.debian.org/507673
http://lists.gnu.org/archive/html/groff/2009-02/msg00013.html
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
-----------------------------------------------------------------
* set default formatting
-----------------------------------------------------------------
disable hyphenation
disable justification (adjust text to left margin only)
-----------------------------------------------------------------
* MAIN CONTENT STARTS HERE *
-----------------------------------------------------------------
\w'dnssec-checkds 'u dnssec-checkds [-l domain] [-f file] [-d dig path] [-D dsfromkey path] {zone}
\w'dnssec-dsfromkey 'u dnssec-dsfromkey [-l domain] [-f file] [-d dig path] [-D dsfromkey path] {zone}
dnssec-checkds verifies the correctness of Delegation Signer (DS) or DNSSEC Lookaside Validation (DLV) resource records for keys in a specified zone.
-f file
If a file is specified, then the zone is read from that file to find the DNSKEY records. If not, then the DNSKEY records for the zone are looked up in the DNS.
-l domain
Check for a DLV record in the specified lookaside domain, instead of checking for a DS record in the zone\*(Aqs parent.
-d dig path
Specifies a path to a dig binary. Used for testing.
-D dsfromkey path
Specifies a path to a dnssec-dsfromkey binary. Used for testing.
dnssec-dsfromkey(8), dnssec-keygen(8), dnssec-signzone(8),
Internet Systems Consortium, Inc.
Copyright \(co 2012-2017 Internet Systems Consortium, Inc. ("ISC")