When a domain configuration file contains an include line for the key,
where is that include looking for the key file?
I'm in a situation where the keys seems to work fine for updating
DNSSEC, but nsdiff complains the key file is not found.
@lbutlr <kremels@kreme.com> wrote:Heh.
When a domain configuration file contains an include line for the key,
where is that include looking for the key file?
... good question, I have avoided having to find that out ...
So it sounds like "the current directory" is the answer to your question.That would certainly explain why it fails then.
However, I don't think you need to $INCLUDE key files. I think maybe that used to be a thing when signing a zone had to involve dnssec-signzone? But nowadays even dnssec-signzone will automatically insert public keys intoAh, that would be good. When I resolve the other issue I posted about I will check that.
the signed zone.
Does that make sense?It does, and thank you.
| Sysop: | DaiTengu |
|---|---|
| Location: | Appleton, WI |
| Users: | 1,089 |
| Nodes: | 10 (0 / 10) |
| Uptime: | 153:47:52 |
| Calls: | 13,921 |
| Calls today: | 2 |
| Files: | 187,021 |
| D/L today: |
3,749 files (943M bytes) |
| Messages: | 2,457,163 |