Home
last modified time | relevance | path

Searched refs:is_ksk (Results 1 – 25 of 30) sorted by relevance

12

/dports/dns/knot3/knot-3.1.5/src/knot/dnssec/
H A Dkey-events.c47 key->is_ksk == want_ksk && in key_id_present()
228 ready_ksk = (ready_ksk || key->is_ksk); in running_rollover()
397 if (key->is_ksk) { in next_action()
491 res.ksk = key->is_ksk; in next_action()
503 assert(newkey->is_ksk); in submit_key()
508 if (key->is_ksk && !key->is_pub_only && in submit_key()
520 if (newkey->is_ksk) { in exec_new_signatures()
528 if (((newkey->is_ksk && key->is_ksk) || (newkey->is_zsk && key->is_zsk && !key->is_ksk)) in exec_new_signatures()
540 } else if (key->is_ksk) { in exec_new_signatures()
550 if (newkey->is_ksk) { in exec_new_signatures()
[all …]
H A Dzone-keys.h38 bool is_ksk; member
75 inline static uint16_t dnskey_flags(bool is_ksk) in dnskey_flags() argument
77 return is_ksk ? DNSKEY_FLAGS_KSK : DNSKEY_FLAGS_ZSK; in dnskey_flags()
H A Dzone-keys.c163 key->is_ksk = (flags & DNSKEY_GENERATE_KSK); in kdnssec_generate_key()
320 zone_key->is_ksk = kasp_key->is_ksk; in set_key()
324 zone_key->is_ready = (zone_key->is_ksk && is_ready(timing, now)); in set_key()
327 …zone_key->is_ksk_active_plus = zone_key->is_public && zone_key->is_ksk && !zone_key->is_active; //… in set_key()
344 zone_key->is_ksk_active_plus = zone_key->is_ksk; in set_key()
352 if (zone_key->is_ksk && in set_key()
411 if (key->is_ksk && key->is_public) { alg_usage[alg] |= 1; } in walk_algorithms()
413 if (key->is_ksk && (key->is_active || key->is_ksk_active_plus)) { alg_usage[alg] |= 4; } in walk_algorithms()
489 (key->is_ksk ? (key->is_zsk ? ", CSK" : ", KSK") : ""), in log_key_info()
H A Dzone-sign.c337 if (!key_used(key->is_ksk, key->is_zsk, covered->type, in knot_validate_rrsigs()
771 assert(key->is_ksk); in knot_zone_sign_get_cdnskeys()
784 if (key->is_ksk && key->is_active && !key->is_ready) { in knot_zone_sign_get_cdnskeys()
934 bool active_ksk = ((key->is_active || key->is_ksk_active_plus) && key->is_ksk); in knot_zone_sign_use_key()
940 assert(key->is_zsk || key->is_ksk); in knot_zone_sign_use_key()
H A Dds_query.c248 assert(key->is_ksk); in knot_parent_ds_query()
/dports/dns/knot3-lib/knot-3.1.5/src/knot/dnssec/
H A Dkey-events.c47 key->is_ksk == want_ksk && in key_id_present()
228 ready_ksk = (ready_ksk || key->is_ksk); in running_rollover()
397 if (key->is_ksk) { in next_action()
491 res.ksk = key->is_ksk; in next_action()
503 assert(newkey->is_ksk); in submit_key()
508 if (key->is_ksk && !key->is_pub_only && in submit_key()
520 if (newkey->is_ksk) { in exec_new_signatures()
528 if (((newkey->is_ksk && key->is_ksk) || (newkey->is_zsk && key->is_zsk && !key->is_ksk)) in exec_new_signatures()
540 } else if (key->is_ksk) { in exec_new_signatures()
550 if (newkey->is_ksk) { in exec_new_signatures()
[all …]
H A Dzone-keys.h38 bool is_ksk; member
75 inline static uint16_t dnskey_flags(bool is_ksk) in dnskey_flags() argument
77 return is_ksk ? DNSKEY_FLAGS_KSK : DNSKEY_FLAGS_ZSK; in dnskey_flags()
H A Dzone-keys.c163 key->is_ksk = (flags & DNSKEY_GENERATE_KSK); in kdnssec_generate_key()
320 zone_key->is_ksk = kasp_key->is_ksk; in set_key()
324 zone_key->is_ready = (zone_key->is_ksk && is_ready(timing, now)); in set_key()
327 …zone_key->is_ksk_active_plus = zone_key->is_public && zone_key->is_ksk && !zone_key->is_active; //… in set_key()
344 zone_key->is_ksk_active_plus = zone_key->is_ksk; in set_key()
352 if (zone_key->is_ksk && in set_key()
411 if (key->is_ksk && key->is_public) { alg_usage[alg] |= 1; } in walk_algorithms()
413 if (key->is_ksk && (key->is_active || key->is_ksk_active_plus)) { alg_usage[alg] |= 4; } in walk_algorithms()
489 (key->is_ksk ? (key->is_zsk ? ", CSK" : ", KSK") : ""), in log_key_info()
H A Dzone-sign.c337 if (!key_used(key->is_ksk, key->is_zsk, covered->type, in knot_validate_rrsigs()
771 assert(key->is_ksk); in knot_zone_sign_get_cdnskeys()
784 if (key->is_ksk && key->is_active && !key->is_ready) { in knot_zone_sign_get_cdnskeys()
934 bool active_ksk = ((key->is_active || key->is_ksk_active_plus) && key->is_ksk); in knot_zone_sign_use_key()
940 assert(key->is_zsk || key->is_ksk); in knot_zone_sign_use_key()
H A Dds_query.c248 assert(key->is_ksk); in knot_parent_ds_query()
/dports/dns/knot3/knot-3.1.5/src/knot/dnssec/kasp/
H A Dkasp_zone.c126 assert(params->is_ksk || !params->is_csk); in params2kaspkey()
127 key->is_ksk = params->is_ksk; in params2kaspkey()
128 key->is_zsk = (params->is_csk || !params->is_ksk); in params2kaspkey()
141 params->is_ksk = key->is_ksk; in kaspkey2params()
142 params->is_csk = (key->is_ksk && key->is_zsk); in kaspkey2params()
379 zone->keys[i].is_ksk = (knot_dnskey_flags(zkey) == DNSKEY_FLAGS_KSK); in kasp_zone_keys_from_rr()
380 zone->keys[i].is_zsk = policy_single_type_signing || !zone->keys[i].is_ksk; in kasp_zone_keys_from_rr()
H A Dpolicy.h46 bool is_ksk; member
63 bool is_ksk; member
H A Dkasp_db.c119 flags |= (params->is_ksk ? 0x01 : 0); in params_serialize()
153 params->is_ksk = ((flags & 0x01) ? true : false); in params_deserialize()
167 if ((flags & 0x02) && (params->is_ksk || !params->is_csk)) { in params_deserialize()
/dports/dns/knot3-lib/knot-3.1.5/src/knot/dnssec/kasp/
H A Dkasp_zone.c126 assert(params->is_ksk || !params->is_csk); in params2kaspkey()
127 key->is_ksk = params->is_ksk; in params2kaspkey()
128 key->is_zsk = (params->is_csk || !params->is_ksk); in params2kaspkey()
141 params->is_ksk = key->is_ksk; in kaspkey2params()
142 params->is_csk = (key->is_ksk && key->is_zsk); in kaspkey2params()
379 zone->keys[i].is_ksk = (knot_dnskey_flags(zkey) == DNSKEY_FLAGS_KSK); in kasp_zone_keys_from_rr()
380 zone->keys[i].is_zsk = policy_single_type_signing || !zone->keys[i].is_ksk; in kasp_zone_keys_from_rr()
H A Dpolicy.h46 bool is_ksk; member
63 bool is_ksk; member
H A Dkasp_db.c119 flags |= (params->is_ksk ? 0x01 : 0); in params_serialize()
153 params->is_ksk = ((flags & 0x01) ? true : false); in params_deserialize()
167 if ((flags & 0x02) && (params->is_ksk || !params->is_csk)) { in params_deserialize()
/dports/dns/knot3-lib/knot-3.1.5/src/utils/keymgr/
H A Dfunctions.c231 if ((kasp_key->is_ksk && (flags & DNSKEY_GENERATE_KSK)) && in keymgr_generate_key()
426 kkey->is_ksk = (dnssec_key_get_flags(kkey->key) == DNSKEY_FLAGS_KSK); in keymgr_import_bind()
427 kkey->is_zsk = !kkey->is_ksk; in keymgr_import_bind()
546 kkey->is_ksk = (flags & DNSKEY_GENERATE_KSK); in import_key()
815 …kdnssec_generate_flags_t flags = ((key->is_ksk ? DNSKEY_GENERATE_KSK : 0) | (key->is_zsk ? DNSKEY_… in keymgr_set_timing()
823 if (key->is_ksk != (bool)(flags & DNSKEY_GENERATE_KSK) || in keymgr_set_timing()
827 key->is_ksk = (flags & DNSKEY_GENERATE_KSK); in keymgr_set_timing()
863 (key->is_ksk ? (key->is_zsk ? COL_YELW(c) : COL_RED(c)) : COL_GRN(c)), in print_key_brief()
864 (key->is_ksk ? (key->is_zsk ? "CSK" : "KSK") : "ZSK"), in print_key_brief()
908 (key->is_ksk ? "yes" : "no "), (key->is_zsk ? "yes" : "no "), in print_key_full()
H A Dmain.c219 if (kctx.zone->keys[i].is_ksk) { in key_command()
/dports/dns/knot3/knot-3.1.5/src/utils/keymgr/
H A Dfunctions.c231 if ((kasp_key->is_ksk && (flags & DNSKEY_GENERATE_KSK)) && in keymgr_generate_key()
426 kkey->is_ksk = (dnssec_key_get_flags(kkey->key) == DNSKEY_FLAGS_KSK); in keymgr_import_bind()
427 kkey->is_zsk = !kkey->is_ksk; in keymgr_import_bind()
546 kkey->is_ksk = (flags & DNSKEY_GENERATE_KSK); in import_key()
815 …kdnssec_generate_flags_t flags = ((key->is_ksk ? DNSKEY_GENERATE_KSK : 0) | (key->is_zsk ? DNSKEY_… in keymgr_set_timing()
823 if (key->is_ksk != (bool)(flags & DNSKEY_GENERATE_KSK) || in keymgr_set_timing()
827 key->is_ksk = (flags & DNSKEY_GENERATE_KSK); in keymgr_set_timing()
863 (key->is_ksk ? (key->is_zsk ? COL_YELW(c) : COL_RED(c)) : COL_GRN(c)), in print_key_brief()
864 (key->is_ksk ? (key->is_zsk ? "CSK" : "KSK") : "ZSK"), in print_key_brief()
908 (key->is_ksk ? "yes" : "no "), (key->is_zsk ? "yes" : "no "), in print_key_full()
H A Dmain.c219 if (kctx.zone->keys[i].is_ksk) { in key_command()
/dports/dns/bind-tools/bind-9.16.27/lib/dns/
H A Dzoneverify.c1469 dns_rdata_t *keyrdata, bool is_ksk) { in check_dnskey_sigs() argument
1477 active_keys = (is_ksk ? vctx->ksk_algorithms : vctx->zsk_algorithms); in check_dnskey_sigs()
1478 standby_keys = (is_ksk ? vctx->standby_ksk : vctx->standby_zsk); in check_dnskey_sigs()
1479 goodkey = (is_ksk ? &vctx->goodksk : &vctx->goodzsk); in check_dnskey_sigs()
1487 if (!is_ksk && in check_dnskey_sigs()
1600 bool is_ksk; in check_dnskey() local
1608 is_ksk = ((dnskey.flags & DNS_KEYFLAG_KSK) != 0); in check_dnskey()
1653 check_dnskey_sigs(vctx, &dnskey, &rdata, is_ksk); in check_dnskey()
/dports/dns/bind916/bind-9.16.27/lib/dns/
H A Dzoneverify.c1469 dns_rdata_t *keyrdata, bool is_ksk) { in check_dnskey_sigs() argument
1477 active_keys = (is_ksk ? vctx->ksk_algorithms : vctx->zsk_algorithms); in check_dnskey_sigs()
1478 standby_keys = (is_ksk ? vctx->standby_ksk : vctx->standby_zsk); in check_dnskey_sigs()
1479 goodkey = (is_ksk ? &vctx->goodksk : &vctx->goodzsk); in check_dnskey_sigs()
1487 if (!is_ksk && in check_dnskey_sigs()
1600 bool is_ksk; in check_dnskey() local
1608 is_ksk = ((dnskey.flags & DNS_KEYFLAG_KSK) != 0); in check_dnskey()
1653 check_dnskey_sigs(vctx, &dnskey, &rdata, is_ksk); in check_dnskey()
/dports/dns/samba-nsupdate/bind-9.16.5/lib/dns/
H A Dzoneverify.c1475 dns_rdata_t *keyrdata, bool is_ksk) { in check_dnskey_sigs() argument
1483 active_keys = (is_ksk ? vctx->ksk_algorithms : vctx->zsk_algorithms); in check_dnskey_sigs()
1484 standby_keys = (is_ksk ? vctx->standby_ksk : vctx->standby_zsk); in check_dnskey_sigs()
1485 goodkey = (is_ksk ? &vctx->goodksk : &vctx->goodzsk); in check_dnskey_sigs()
1493 if (!is_ksk && in check_dnskey_sigs()
1606 bool is_ksk; in check_dnskey() local
1614 is_ksk = ((dnskey.flags & DNS_KEYFLAG_KSK) != 0); in check_dnskey()
1657 check_dnskey_sigs(vctx, &dnskey, &rdata, is_ksk); in check_dnskey()
/dports/dns/bind9-devel/bind9-e112afa15668bd3b1baed59df2d21e01b46da15e/lib/dns/
H A Dzoneverify.c1466 dns_rdata_t *keyrdata, bool is_ksk) { in check_dnskey_sigs() argument
1474 active_keys = (is_ksk ? vctx->ksk_algorithms : vctx->zsk_algorithms); in check_dnskey_sigs()
1475 standby_keys = (is_ksk ? vctx->standby_ksk : vctx->standby_zsk); in check_dnskey_sigs()
1476 goodkey = (is_ksk ? &vctx->goodksk : &vctx->goodzsk); in check_dnskey_sigs()
1484 if (!is_ksk && in check_dnskey_sigs()
1597 bool is_ksk; in check_dnskey() local
1605 is_ksk = ((dnskey.flags & DNS_KEYFLAG_KSK) != 0); in check_dnskey()
1650 check_dnskey_sigs(vctx, &dnskey, &rdata, is_ksk); in check_dnskey()
/dports/dns/dnsviz/dnsviz-0.9.2/dnsviz/viz/
H A Ddnssec.py1898 is_ksk = bool([x for x in in_edges if x[0].startswith('DNSKEY-')])
1903 if is_ksk:

12