man.dnssec-dsfromkey.html revision cd32f419a8a5432fbb139f56ee73cbf68b9350cc
1633838b8255282d10af15c5c84cee5a51466712Bob Halley<!--
0c27b3fe77ac1d5094ba3521e8142d9e7973133fMark Andrews - Copyright (C) 2004-2015 Internet Systems Consortium, Inc. ("ISC")
40f53fa8d9c6a4fc38c0014495e7a42b08f52481David Lawrence - Copyright (C) 2000-2003 Internet Software Consortium.
0c27b3fe77ac1d5094ba3521e8142d9e7973133fMark Andrews -
0c27b3fe77ac1d5094ba3521e8142d9e7973133fMark Andrews - Permission to use, copy, modify, and/or distribute this software for any
0c27b3fe77ac1d5094ba3521e8142d9e7973133fMark Andrews - purpose with or without fee is hereby granted, provided that the above
1633838b8255282d10af15c5c84cee5a51466712Bob Halley - copyright notice and this permission notice appear in all copies.
c50fd34a4e0e6978f8ca5f6f3ad8545549c3cfeeBob Halley -
c50fd34a4e0e6978f8ca5f6f3ad8545549c3cfeeBob Halley - THE SOFTWARE IS PROVIDED "AS IS" AND ISC DISCLAIMS ALL WARRANTIES WITH
c50fd34a4e0e6978f8ca5f6f3ad8545549c3cfeeBob Halley - REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF MERCHANTABILITY
c50fd34a4e0e6978f8ca5f6f3ad8545549c3cfeeBob Halley - AND FITNESS. IN NO EVENT SHALL ISC BE LIABLE FOR ANY SPECIAL, DIRECT,
29747dfe5e073a299b3681e01f5c55540f8bfed7Mark Andrews - INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM
ab023a65562e62b85a824509d829b6fad87e00b1Rob Austein - LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE
904a5734375869ffb504ed8cde6b68cafadb6d64Bob Halley - OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
e4e071ae12aee942fefc2c0a3280e402938669deBob Halley - PERFORMANCE OF THIS SOFTWARE.
904a5734375869ffb504ed8cde6b68cafadb6d64Bob Halley-->
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley<!-- $Id$ -->
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley<html>
09f22ac5b09e70bc526015f37168ba33e21ea91fDavid Lawrence<head>
09f22ac5b09e70bc526015f37168ba33e21ea91fDavid Lawrence<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
09f22ac5b09e70bc526015f37168ba33e21ea91fDavid Lawrence<title>dnssec-dsfromkey</title>
09f22ac5b09e70bc526015f37168ba33e21ea91fDavid Lawrence<meta name="generator" content="DocBook XSL Stylesheets V1.71.1">
09f22ac5b09e70bc526015f37168ba33e21ea91fDavid Lawrence<link rel="start" href="Bv9ARM.html" title="BIND 9 Administrator Reference Manual">
09f22ac5b09e70bc526015f37168ba33e21ea91fDavid Lawrence<link rel="up" href="Bv9ARM.ch13.html" title="Manual pages">
1a69a1a78cfaa86f3b68bbc965232b7876d4da2aDavid Lawrence<link rel="prev" href="man.dnssec-coverage.html" title="dnssec-coverage">
904a5734375869ffb504ed8cde6b68cafadb6d64Bob Halley<link rel="next" href="man.dnssec-importkey.html" title="dnssec-importkey">
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley</head>
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley<body bgcolor="white" text="black" link="#0000FF" vlink="#840084" alink="#0000FF">
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley<div class="navheader">
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington<table width="100%" summary="Navigation header">
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington<tr><th colspan="3" align="center"><span class="application">dnssec-dsfromkey</span></th></tr>
b6309ed962c4988a314d61742c4fbc4935467d68Mark Andrews<tr>
b6309ed962c4988a314d61742c4fbc4935467d68Mark Andrews<td width="20%" align="left">
b6309ed962c4988a314d61742c4fbc4935467d68Mark Andrews<a accesskey="p" href="man.dnssec-coverage.html">Prev</a>�</td>
b6309ed962c4988a314d61742c4fbc4935467d68Mark Andrews<th width="60%" align="center">Manual pages</th>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington<td width="20%" align="right">�<a accesskey="n" href="man.dnssec-importkey.html">Next</a>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington</td>
b6309ed962c4988a314d61742c4fbc4935467d68Mark Andrews</tr>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington</table>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington<hr>
bcff3198111e329e89cde7dac9d432b002477d80Mark Andrews</div>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington<div class="refentry" lang="en">
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington<a name="man.dnssec-dsfromkey"></a><div class="titlepage"></div>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington<div class="refnamediv">
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington<h2>Name</h2>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington<p><span class="application">dnssec-dsfromkey</span> &#8212; DNSSEC DS RR generation tool</p>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington</div>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington<div class="refsynopsisdiv">
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley<h2>Synopsis</h2>
84cb41f729e2a8526300dd7a6cffaa66da5cf6cdMark Andrews<div class="cmdsynopsis"><p><code class="command">dnssec-dsfromkey</code> [<code class="option">-v <em class="replaceable"><code>level</code></em></code>] [<code class="option">-1</code>] [<code class="option">-2</code>] [<code class="option">-a <em class="replaceable"><code>alg</code></em></code>] [<code class="option">-l <em class="replaceable"><code>domain</code></em></code>] [<code class="option">-T <em class="replaceable"><code>TTL</code></em></code>] {keyfile}</p></div>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington<div class="cmdsynopsis"><p><code class="command">dnssec-dsfromkey</code> {-s} [<code class="option">-1</code>] [<code class="option">-2</code>] [<code class="option">-a <em class="replaceable"><code>alg</code></em></code>] [<code class="option">-K <em class="replaceable"><code>directory</code></em></code>] [<code class="option">-l <em class="replaceable"><code>domain</code></em></code>] [<code class="option">-s</code>] [<code class="option">-c <em class="replaceable"><code>class</code></em></code>] [<code class="option">-T <em class="replaceable"><code>TTL</code></em></code>] [<code class="option">-f <em class="replaceable"><code>file</code></em></code>] [<code class="option">-A</code>] [<code class="option">-v <em class="replaceable"><code>level</code></em></code>] {dnsname}</p></div>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington<div class="cmdsynopsis"><p><code class="command">dnssec-dsfromkey</code> [<code class="option">-h</code>] [<code class="option">-V</code>]</p></div>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington</div>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington<div class="refsect1" lang="en">
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington<a name="id2620050"></a><h2>DESCRIPTION</h2>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington<p><span><strong class="command">dnssec-dsfromkey</strong></span>
618e871c2eb80021673bedf083496ccd1bf65cd0Brian Wellington outputs the Delegation Signer (DS) resource record (RR), as defined in
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington RFC 3658 and RFC 4509, for the given key(s).
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington </p>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington</div>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington<div class="refsect1" lang="en">
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington<a name="id2620064"></a><h2>OPTIONS</h2>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington<div class="variablelist"><dl>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington<dt><span class="term">-1</span></dt>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington<dd><p>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington Use SHA-1 as the digest algorithm (the default is to use
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington both SHA-1 and SHA-256).
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley </p></dd>
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley<dt><span class="term">-2</span></dt>
b55c30f2de6e1baaa3a9ba69b92f428f2c255ac3Mark Andrews<dd><p>
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley Use SHA-256 as the digest algorithm.
308c7ad5f68301d19f023af616f62f3e7cbce632Andreas Gustafsson </p></dd>
04b8111f2137a9cf9b0b71228f76b3e40ffa1173Brian Wellington<dt><span class="term">-a <em class="replaceable"><code>algorithm</code></em></span></dt>
04b8111f2137a9cf9b0b71228f76b3e40ffa1173Brian Wellington<dd><p>
ccad3c9ecbe8a1060ff7b407a318ccd592de536eBrian Wellington Select the digest algorithm. The value of
ccad3c9ecbe8a1060ff7b407a318ccd592de536eBrian Wellington <code class="option">algorithm</code> must be one of SHA-1 (SHA1),
ccad3c9ecbe8a1060ff7b407a318ccd592de536eBrian Wellington SHA-256 (SHA256), GOST or SHA-384 (SHA384).
ccad3c9ecbe8a1060ff7b407a318ccd592de536eBrian Wellington These values are case insensitive.
ccad3c9ecbe8a1060ff7b407a318ccd592de536eBrian Wellington </p></dd>
8224be5129daebea8f0f5e8be5f925679ec893f1Brian Wellington<dt><span class="term">-T <em class="replaceable"><code>TTL</code></em></span></dt>
8224be5129daebea8f0f5e8be5f925679ec893f1Brian Wellington<dd><p>
a413f94248ceed48a6b7aaa2fa1d2401fb8b9f30Brian Wellington Specifies the TTL of the DS records.
d14b749789121d9d502fa1348e9e73270e9b039fBob Halley </p></dd>
63d1ef9e771b748ca9bf241dfc1f07d3730203faBob Halley<dt><span class="term">-K <em class="replaceable"><code>directory</code></em></span></dt>
659175b7d430afe13b439e499442a964e2c9110fMark Andrews<dd><p>
cd02757774252fe5b92dbd59a24b34721fb49ff4Bob Halley Look for key files (or, in keyset mode,
cd02757774252fe5b92dbd59a24b34721fb49ff4Bob Halley <code class="filename">keyset-</code> files) in
7b4dcbb89b71b17f5c16ca19a0e705e09509f063Bob Halley <code class="option">directory</code>.
73af6575e00f8cf4942abce177f435797b9cfe41Brian Wellington </p></dd>
322b0fb39dd1538c9f5021cd2f54d4c12684ecdbBrian Wellington<dt><span class="term">-f <em class="replaceable"><code>file</code></em></span></dt>
3864eb0e9a73148ac744893b5367169761184db5Mark Andrews<dd>
f53e43c37f2c978ccec0b49ed829426b213f9933Bob Halley<p>
afbc02482008c58af2c98000209165f6880835f7Mark Andrews Zone file mode: in place of the keyfile name, the argument is
e1f16346db02486f751c6db683fffe53c866c186Andreas Gustafsson the DNS domain name of a zone master file, which can be read
93d6dfaf66258337985427c86181f01fc51f0bb4Mark Andrews from <code class="option">file</code>. If the zone name is the same as
2ee24549b3dddd4046ee14257e1207cf2e34f29cBrian Wellington <code class="option">file</code>, then it may be omitted.
9ac7076ebad044afb15e9e2687e3696868778538Mark Andrews </p>
6850cdd4497424c9d42ade487edfde9fb9a47de9Brian Wellington<p>
20a313a4581e7f85fb2ce37430a146b3538da841Mark Andrews If <code class="option">file</code> is set to <code class="literal">"-"</code>, then
20a313a4581e7f85fb2ce37430a146b3538da841Mark Andrews the zone data is read from the standard input. This makes it
b20ee662a7c847c9ef7b96ab9e5e34543efe5c0dMark Andrews possible to use the output of the <span><strong class="command">dig</strong></span>
b55c30f2de6e1baaa3a9ba69b92f428f2c255ac3Mark Andrews command as input, as in:
e21d199dca95aff5d50f133d6b064309e209af00Brian Wellington </p>
6a56be50dd11702cb65347a57894ffd96a7e3501Andreas Gustafsson<p>
1275a72e8db349ce249c84804b2b4861d33d4db7Brian Wellington <strong class="userinput"><code>dig dnskey example.com | dnssec-dsfromkey -f - example.com</code></strong>
15af30dfc1c54a02d252dcf4c6f3b8759eaf0327Bob Halley </p>
15af30dfc1c54a02d252dcf4c6f3b8759eaf0327Bob Halley</dd>
58cbc05eb0b80510182496ad905cd407f3624dbeBrian Wellington<dt><span class="term">-A</span></dt>
a93cf7e83be621d3d68f51e37121a47a70a6757bMark Andrews<dd><p>
9ac7076ebad044afb15e9e2687e3696868778538Mark Andrews Include ZSKs when generating DS records. Without this option,
5ea0d11ca45bfd1ea9db8db07f18fbb02f500661Brian Wellington only keys which have the KSK flag set will be converted to DS
a9ef4854464fcc56d95f72331b6e09e9563bb5f3Andreas Gustafsson records and printed. Useful only in zone file mode.
2c64908ae0d5b5a1cfead295d7526e7be550d3d3Mark Andrews </p></dd>
01446841be2b73f9a2ead74056df2d5342414041Andreas Gustafsson<dt><span class="term">-l <em class="replaceable"><code>domain</code></em></span></dt>
ff1b064f5e2bf19c8e25f8927d23df5714e666edMark Andrews<dd><p>
b6279d0b4b19f041b29775e637074e09f38e5e11Brian Wellington Generate a DLV set instead of a DS set. The specified
231ffa6c85cd04d5d83f80643e26fdc3ff510138Brian Wellington <code class="option">domain</code> is appended to the name for each
4b171ebd702d72200a4d7609f11c5f79d6b6f964Brian Wellington record in the set.
0b09763c354ec91fb352b6b4cea383bd0195b2d8Mark Andrews The DNSSEC Lookaside Validation (DLV) RR is described
4d9f3f00d93fcb8743b1105e8cf82e862be220d1Mark Andrews in RFC 4431.
5bd76af084edfdcd1cb4db9453ac781d32dde6f7Mark Andrews </p></dd>
5bd76af084edfdcd1cb4db9453ac781d32dde6f7Mark Andrews<dt><span class="term">-s</span></dt>
5bd76af084edfdcd1cb4db9453ac781d32dde6f7Mark Andrews<dd><p>
5bd76af084edfdcd1cb4db9453ac781d32dde6f7Mark Andrews Keyset mode: in place of the keyfile name, the argument is
5bd76af084edfdcd1cb4db9453ac781d32dde6f7Mark Andrews the DNS domain name of a keyset file.
c86eed4bdecad9df12f992f9d743dfee3a6c5bdcMark Andrews </p></dd>
421e4cf66e4cba0b0751a34a9c027e39fe0474f9Mark Andrews<dt><span class="term">-c <em class="replaceable"><code>class</code></em></span></dt>
8b5de9701428e2b5eb50aba96af23dc1186124ddMark Andrews<dd><p>
182a34004c7c48e2c1626f3ce7e787f413955126Mark Andrews Specifies the DNS class (default is IN). Useful only
35541328a8c18ba1f984300dfe30ec8713c90031Mark Andrews in keyset or zone file mode.
2047977ce2dfcfe3a0fa2d638c3242841310fad3Mark Andrews </p></dd>
2047977ce2dfcfe3a0fa2d638c3242841310fad3Mark Andrews<dt><span class="term">-v <em class="replaceable"><code>level</code></em></span></dt>
d5ad558234adfef1b847b534dd7b4c6302cc5ea3Mark Andrews<dd><p>
c5cde9d5a70c921da901a23845e740ccc7a8c4e4Mark Andrews Sets the debugging level.
8d414d155953f89a4eff40f16878438a8c9228f3Mark Andrews </p></dd>
6fac7ff1f9ec9c3873d3b55c5079fa79aba1f146Mark Andrews<dt><span class="term">-h</span></dt>
c5223c9cb7c22620d5ee6611228673e95b48a270Mark Andrews<dd><p>
9b80f3a7c739a99b498a37a711a51b6a88df3a78Mark Andrews Prints usage information.
6098d364b690cb9dabf96e9664c4689c8559bd2eMark Andrews </p></dd>
77b8f88f144928eddcca144c348d6ef53e7d5c43Evan Hunt<dt><span class="term">-V</span></dt>
0cae66577c69c89086cd065bb297690072b471b4Mark Andrews<dd><p>
433e06a25cdd92d665abda3e64c2c65f4a3f9b21Mark Andrews Prints version information.
7cb226ec344f3996906c015ef58749c5565b2a05Evan Hunt </p></dd>
3a6d62c59f73d024d1b2ba2ac94d7600530166ffMark Andrews</dl></div>
0cfb24736841b3e98bb25853229a0efabab88bddEvan Hunt</div>
598b502695802c3d4e23316b85368e54f39f5cabMark Andrews<div class="refsect1" lang="en">
598b502695802c3d4e23316b85368e54f39f5cabMark Andrews<a name="id2620736"></a><h2>EXAMPLE</h2>
ce67023ae3ad39a77da5361d0187ab6f3f0219cbMark Andrews<p>
b66b333f59cf51ef87f973084a5023acd9317fb2Evan Hunt To build the SHA-256 DS RR from the
8475bed9de77920f884f1ae296f581efbd1e42f8Mark Andrews <strong class="userinput"><code>Kexample.com.+003+26160</code></strong>
8475bed9de77920f884f1ae296f581efbd1e42f8Mark Andrews keyfile name, the following command would be issued:
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley </p>
8475bed9de77920f884f1ae296f581efbd1e42f8Mark Andrews<p><strong class="userinput"><code>dnssec-dsfromkey -2 Kexample.com.+003+26160</code></strong>
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley </p>
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley<p>
894a2f61c9e3e51463bf21957c003d7c5636bdc5David Lawrence The command would print something like:
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley </p>
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley<p><strong class="userinput"><code>example.com. IN DS 26160 5 2 3A1EADA7A74B8D0BA86726B0C227AA85AB8BBD2B2004F41A868A54F0 C5EA0B94</code></strong>
894a2f61c9e3e51463bf21957c003d7c5636bdc5David Lawrence </p>
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley</div>
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley<div class="refsect1" lang="en">
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley<a name="id2620772"></a><h2>FILES</h2>
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley<p>
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley The keyfile can be designed by the key identification
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley <code class="filename">Knnnn.+aaa+iiiii</code> or the full file name
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley <code class="filename">Knnnn.+aaa+iiiii.key</code> as generated by
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley <span class="refentrytitle">dnssec-keygen</span>(8).
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley </p>
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley<p>
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley The keyset file name is built from the <code class="option">directory</code>,
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley the string <code class="filename">keyset-</code> and the
9e804040a29b9c3066c8471b43835f30707039b7Evan Hunt <code class="option">dnsname</code>.
9e804040a29b9c3066c8471b43835f30707039b7Evan Hunt </p>
9e804040a29b9c3066c8471b43835f30707039b7Evan Hunt</div>
9e804040a29b9c3066c8471b43835f30707039b7Evan Hunt<div class="refsect1" lang="en">
9e804040a29b9c3066c8471b43835f30707039b7Evan Hunt<a name="id2620813"></a><h2>CAVEAT</h2>
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley<p>
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley A keyfile error can give a "file not found" even if the file exists.
ab023a65562e62b85a824509d829b6fad87e00b1Rob Austein </p>
125d72976ab6b8fa6629a5ace276a86e9fef91acBrian Wellington</div>
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley<div class="refsect1" lang="en">
25e43e68b7431d5e4ff8b5427108cd7f5f9bcf3eBob Halley<a name="id2620823"></a><h2>SEE ALSO</h2>
c50fd34a4e0e6978f8ca5f6f3ad8545549c3cfeeBob Halley<p><span class="citerefentry"><span class="refentrytitle">dnssec-keygen</span>(8)</span>,
09f22ac5b09e70bc526015f37168ba33e21ea91fDavid Lawrence <span class="citerefentry"><span class="refentrytitle">dnssec-signzone</span>(8)</span>,
09f22ac5b09e70bc526015f37168ba33e21ea91fDavid Lawrence <em class="citetitle">BIND 9 Administrator Reference Manual</em>,
6d12fdf96621801e80f3f4c2a8a569fe48766a20David Lawrence <em class="citetitle">RFC 3658</em>,
09f22ac5b09e70bc526015f37168ba33e21ea91fDavid Lawrence <em class="citetitle">RFC 4431</em>.
09f22ac5b09e70bc526015f37168ba33e21ea91fDavid Lawrence <em class="citetitle">RFC 4509</em>.
09f22ac5b09e70bc526015f37168ba33e21ea91fDavid Lawrence </p>
09f22ac5b09e70bc526015f37168ba33e21ea91fDavid Lawrence</div>
09f22ac5b09e70bc526015f37168ba33e21ea91fDavid Lawrence<div class="refsect1" lang="en">
09f22ac5b09e70bc526015f37168ba33e21ea91fDavid Lawrence<a name="id2622091"></a><h2>AUTHOR</h2>
09f22ac5b09e70bc526015f37168ba33e21ea91fDavid Lawrence<p><span class="corpauthor">Internet Systems Consortium</span>
c50fd34a4e0e6978f8ca5f6f3ad8545549c3cfeeBob Halley </p>
904a5734375869ffb504ed8cde6b68cafadb6d64Bob Halley</div>
904a5734375869ffb504ed8cde6b68cafadb6d64Bob Halley</div>
c50fd34a4e0e6978f8ca5f6f3ad8545549c3cfeeBob Halley<div class="navfooter">
<hr>
<table width="100%" summary="Navigation footer">
<tr>
<td width="40%" align="left">
<a accesskey="p" href="man.dnssec-coverage.html">Prev</a>�</td>
<td width="20%" align="center"><a accesskey="u" href="Bv9ARM.ch13.html">Up</a></td>
<td width="40%" align="right">�<a accesskey="n" href="man.dnssec-importkey.html">Next</a>
</td>
</tr>
<tr>
<td width="40%" align="left" valign="top">
<span class="application">dnssec-coverage</span>�</td>
<td width="20%" align="center"><a accesskey="h" href="Bv9ARM.html">Home</a></td>
<td width="40%" align="right" valign="top">�<span class="application">dnssec-importkey</span>
</td>
</tr>
</table>
</div>
<p style="text-align: center;">BIND 9.11.0pre-alpha</p>
</body>
</html>