TEXT   51

dnssec steps

Guest on 9th June 2022 01:24:10 AM

  1. edit zone stanza to reflect file $domain.signed
  2. rndc reload $domain
  3.  
  4. check locally:
  5. dig DNSKEY $domain @localhost +multiline
  6. dig A $domain @localhost +noadditional +dnssec +multiline
  7.  
  8. cat dsset-$domain.
  9. go to $registrar and add Delegation Signer Record
  10.  
  11. check for DS record globally
  12. dig +trace +noadditional DS $domain @8.8.8.8 | grep DS

Raw Paste


Login or Register to edit or fork this paste. It's free.