ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrews#!/bin/sh -e
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrews#
0c27b3fe77ac1d5094ba3521e8142d9e7973133fMark Andrews# Copyright (C) 2012, 2014, 2016 Internet Systems Consortium, Inc. ("ISC")
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrews#
0c27b3fe77ac1d5094ba3521e8142d9e7973133fMark Andrews# This Source Code Form is subject to the terms of the Mozilla Public
0c27b3fe77ac1d5094ba3521e8142d9e7973133fMark Andrews# License, v. 2.0. If a copy of the MPL was not distributed with this
0c27b3fe77ac1d5094ba3521e8142d9e7973133fMark Andrews# file, You can obtain one at http://mozilla.org/MPL/2.0/.
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrews
ecd851b8327b364378a5b7a50d116af923b683a1Mark AndrewsSYSTEMTESTTOP=../..
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrews. $SYSTEMTESTTOP/conf.sh
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrews
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrewszone=.
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrewsinfile=root.db.in
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrewszonefile=root.db
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrews
60988462e5d6db53205851d056e3482a29239be9Evan Hunt(cd ../ns2 && $SHELL sign.sh)
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrews
cc51cd2d2076e33117c60c9effcb8caccde4983bWitold Krecickicp ../ns2/dsset-good$TP .
cc51cd2d2076e33117c60c9effcb8caccde4983bWitold Krecickicp ../ns2/dsset-bad$TP .
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrews
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrewskey1=`$KEYGEN -q -r $RANDFILE -a RSASHA1 -b 1024 -n zone $zone`
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrewskey2=`$KEYGEN -q -r $RANDFILE -a RSASHA1 -b 2048 -n zone -f KSK $zone`
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrews
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrewscat $infile $key1.key $key2.key > $zonefile
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrews
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrews$SIGNER -P -g -r $RANDFILE -o $zone $zonefile > /dev/null
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrews
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrews# Configure the resolving server with a trusted key.
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrews
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrewscat $key2.key | grep -v '^; ' | $PERL -n -e '
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrewslocal ($dn, $class, $type, $flags, $proto, $alg, @rest) = split;
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrewslocal $key = join("", @rest);
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrewsprint <<EOF
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrewstrusted-keys {
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrews "$dn" $flags $proto $alg "$key";
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrews};
ecd851b8327b364378a5b7a50d116af923b683a1Mark AndrewsEOF
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrews' > trusted.conf
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrewscp trusted.conf ../ns2/trusted.conf
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrewscp trusted.conf ../ns3/trusted.conf
ecd851b8327b364378a5b7a50d116af923b683a1Mark Andrewscp trusted.conf ../ns4/trusted.conf