/dports/dns/opendnssec2/opendnssec-2.1.10/signer/src/signer/ |
H A D | zone.c | 117 if (!zone->signconf) { in zone_create() 150 if (!signconf) { in zone_load_signconf() 162 *new_signconf = signconf; in zone_load_signconf() 195 if (!zone || !zone->db || !zone->signconf || !zone->signconf->keys) { in zone_publish_dnskeys() 284 if (!zone || !zone->signconf || !zone->signconf->keys) { in zone_rollback_dnskeys() 374 if (!zone || !zone->signconf || !zone->signconf->nsec3params) { in zone_rollback_nsec3param() 400 if (!zone || !zone->db || !zone->signconf || !zone->signconf->keys) { in zone_prepare_keys() 412 if(zone->signconf->dnskey_signature != NULL && zone->signconf->keys->keys[i].ksk) in zone_prepare_keys() 415 …skip_hsm_access = (zone->signconf->keys->keys[i].publish || zone->signconf->keys->keys[i].zsk || z… in zone_prepare_keys() 911 zone->signconf, in zone_recover2() [all …]
|
H A D | signconf.c | 95 if (!scfile || !signconf) { in signconf_read() 107 signconf->filename = strdup(scfile); in signconf_read() 123 signconf->nsec3params = nsec3params_create((void*) signconf, in signconf_read() 124 (uint8_t) signconf->nsec3_algo, (uint8_t) signconf->nsec3_optout, in signconf_read() 125 (uint16_t)signconf->nsec3_iterations, signconf->nsec3_salt); in signconf_read() 126 if (!signconf->nsec3params) { in signconf_read() 133 signconf->keys = parse_sc_keys((void*) signconf, scfile); in signconf_read() 136 signconf->soa_ttl = parse_sc_soa_ttl(scfile); in signconf_read() 137 signconf->soa_min = parse_sc_soa_min(scfile); in signconf_read() 161 if (!scfile || !signconf) { in signconf_update() [all …]
|
H A D | tools.c | 63 if (signconf_compare_denial(zone->signconf, new_signconf) in tools_signconf() 74 signconf_cleanup(zone->signconf); in tools_signconf() 77 zone->signconf = new_signconf; in tools_signconf() 78 signconf_log(zone->signconf, zone->name); in tools_signconf() 79 zone->default_ttl = (uint32_t) duration2time(zone->signconf->soa_min); in tools_signconf() 102 ods_log_assert(zone->signconf); in tools_input() 115 if (!zone->signconf->passthrough) in tools_input() 189 ods_log_assert(zone->signconf); in tools_output() 270 zone->signconf->nsec_type); in tools_output()
|
H A D | rrset.c | 546 for(int keyidx=0; keyidx<signconf->keys->count; keyidx++) { in rrsigkeymatching() 550 matches[matchidx].key = &signconf->keys->keys[keyidx]; in rrsigkeymatching() 556 matches[nmatches].key = &signconf->keys->keys[keyidx]; in rrsigkeymatching() 593 ods_log_assert(zone->signconf); in rrset_sign() 668 assert(zone->signconf); in rrset_sign() 670 rrset_sigvalid_period(zone->signconf, rrset->rrtype, signtime, in rrset_sign() 673 if (zone->signconf && zone->signconf->sig_refresh_interval) { in rrset_sign() 791 rrset->rrtype, zone->signconf->keys->keys[i].locator); in rrset_sign() 815 if(rrset->rrtype == LDNS_RR_TYPE_DNSKEY && zone->signconf->dnskey_signature) { in rrset_sign() 816 for(i=0; zone->signconf->dnskey_signature[i]; i++) { in rrset_sign() [all …]
|
H A D | denial.c | 267 ods_log_assert(zone->signconf); in denial_add_rr() 269 if (zone->signconf->nsec3params) { in denial_add_rr() 304 ods_log_assert(zone->signconf); in denial_nsecify() 308 if (zone->signconf->soa_min) { in denial_nsecify() 309 ttl = (uint32_t) duration2time(zone->signconf->soa_min); in denial_nsecify() 313 zone->signconf->nsec3params); in denial_nsecify()
|
H A D | signconf.h | 90 extern ods_status signconf_update(signconf_type** signconf, const char* scfile, 108 extern ods_status signconf_check(signconf_type* signconf);
|
H A D | keys.c | 48 keylist_create(signconf_type* signconf) in keylist_create() argument 52 if (!signconf) { in keylist_create() 61 kl->sc = signconf; in keylist_create()
|
H A D | namedb.c | 550 ods_log_assert(zone->signconf); in namedb_add_denial_trigger() 551 if (!zone->signconf->passthrough) { in namedb_add_denial_trigger() 552 if (zone->signconf->nsec_type == LDNS_RR_TYPE_NSEC) { in namedb_add_denial_trigger() 555 ods_log_assert(zone->signconf->nsec_type == LDNS_RR_TYPE_NSEC3); in namedb_add_denial_trigger() 556 namedb_add_nsec3_trigger(db, domain, zone->signconf->nsec3params); in namedb_add_denial_trigger() 638 ods_log_assert(zone->signconf); in namedb_del_denial_trigger() 642 if (zone->signconf->nsec_type == LDNS_RR_TYPE_NSEC) { in namedb_del_denial_trigger() 645 ods_log_assert(zone->signconf->nsec_type == in namedb_del_denial_trigger() 648 zone->signconf->nsec3params); in namedb_del_denial_trigger()
|
H A D | zone.h | 77 signconf_type* signconf; /* signer configuration values */ member
|
/dports/dns/opendnssec2/opendnssec-2.1.10/contrib/ods-migratekeytool/ |
H A D | ods-migratekeytool.py | 37 ( signconf, keys ) = readsignconf(signconffname) 40 patchsignconf(signconf, keys) 41 writesignconf(signconf, signconffname, "pseudo") 207 def readsignconf(signconf, prefix=None): argument 210 fname = signconf 212 fname = os.path.join(os.path.dirname(signconf), prefix + "-" + os.path.basename(signconf)) 237 def mergesignconf(signconf, keys, fname, prefix=None): argument 239 fname = os.path.join(os.path.dirname(signconf), prefix + "-" + os.path.basename(signconf)) 285 def writesignconf(doc, signconf, prefix=None): argument 287 fname = signconf [all …]
|
/dports/dns/opendnssec2/opendnssec-2.1.10/signer/src/adapter/ |
H A D | adapi.c | 189 ods_log_assert(zone->signconf); in adapi_process_soa() 195 if (zone->signconf->soa_ttl) { in adapi_process_soa() 196 tmp = (uint32_t) duration2time(zone->signconf->soa_ttl); in adapi_process_soa() 201 if (zone->signconf->soa_min) { in adapi_process_soa() 202 tmp = (uint32_t) duration2time(zone->signconf->soa_min); in adapi_process_soa() 224 zone->signconf->soa_serial, tmp); in adapi_process_soa() 264 ods_log_assert(zone->signconf); in adapi_process_dnskey() 265 tmp = (uint32_t) duration2time(zone->signconf->dnskey_ttl); in adapi_process_dnskey() 285 ods_log_assert(zone->signconf); in adapi_process_rr() 318 } else if (zone->signconf->max_zone_ttl) { in adapi_process_rr() [all …]
|
/dports/dns/opendnssec2/opendnssec-2.1.10/signer/src/daemon/ |
H A D | signertasks.c | 216 if (status == ODS_STATUS_UNCHANGED && !zone->signconf->last_modified) { in do_readsignconf() 229 if (!zone->signconf->last_modified) { in do_readsignconf() 350 if (!zone->signconf->last_modified) { in do_readzone() 362 if (!zone->signconf->last_modified) { in do_readzone() 395 if (!zone->signconf->last_modified) { in do_forcereadzone() 407 if (!zone->signconf->last_modified) { in do_forcereadzone() 442 if (zone->signconf && in do_writezone() 443 duration2time(zone->signconf->sig_resign_interval)) { in do_writezone() 445 duration2time(zone->signconf->sig_resign_interval); in do_writezone()
|
H A D | signercommands.c | 404 signconf_cleanup(zone->signconf); in cmdhandler_handle_cmd_clear() 408 zone->signconf = signconf_create(); in cmdhandler_handle_cmd_clear() 410 if (!zone->signconf || !zone->ixfr || !zone->db) { in cmdhandler_handle_cmd_clear()
|
/dports/dns/opendnssec2/opendnssec-2.1.10/enforcer/src/keystate/ |
H A D | zone_add_cmd.c | 95 const char *signconf = NULL; in run() local 148 signconf = optarg; in run() 332 if (signconf) { in run() 333 if (signconf[0] == '/') { in run() 334 if (zone_db_set_signconf_path(zone, signconf)) { in run() 339 …if (snprintf(path, sizeof(path), "%s/signconf/%s", OPENDNSSEC_STATE_DIR, signconf) >= (int)sizeof(… in run()
|
/dports/dns/opendnssec2/opendnssec-2.1.10/enforcer/src/ |
H A D | Makefile.in | 216 signconf/signconf_cmd.c signconf/signconf_cmd.h \ 217 signconf/signconf_task.c signconf/signconf_task.h \ 218 signconf/signconf_xml.c signconf/signconf_xml.h \ 789 signconf/signconf_cmd.c signconf/signconf_cmd.h \ 790 signconf/signconf_task.c signconf/signconf_task.h \ 791 signconf/signconf_xml.c signconf/signconf_xml.h \ 1152 signconf/$(am__dirstamp): 1153 @$(MKDIR_P) signconf 1158 signconf/signconf_cmd.$(OBJEXT): signconf/$(am__dirstamp) \ 1160 signconf/signconf_task.$(OBJEXT): signconf/$(am__dirstamp) \ [all …]
|
H A D | Makefile.am | 89 signconf/signconf_cmd.c signconf/signconf_cmd.h \ 90 signconf/signconf_task.c signconf/signconf_task.h \ 91 signconf/signconf_xml.c signconf/signconf_xml.h \
|
/dports/dns/opendnssec2/opendnssec-2.1.10/conf/ |
H A D | Makefile.am | 3 RNC = addns.rnc conf.rnc kasp.rnc zonelist.rnc signconf.rnc enforcerstate.rnc 4 RNG = addns.rng conf.rng kasp.rng zonelist.rng signconf.rng enforcerstate.rng 5 XML = addns.xml conf.xml kasp.xml zonelist.xml signconf.xml enforcerstate.xml
|
H A D | Makefile.in | 128 signconf.xml zonelist.xml 181 $(srcdir)/kasp.xml.in $(srcdir)/signconf.xml.in \ 403 RNC = addns.rnc conf.rnc kasp.rnc zonelist.rnc signconf.rnc enforcerstate.rnc 404 RNG = addns.rng conf.rng kasp.rng zonelist.rng signconf.rng enforcerstate.rng 405 XML = addns.xml conf.xml kasp.xml zonelist.xml signconf.xml enforcerstate.xml 454 signconf.xml: $(top_builddir)/config.status $(srcdir)/signconf.xml.in
|
H A D | enforcerstate.rnc | 37 # signconf varchar(4096), -- where is the signconf
|
/dports/dns/opendnssec2/opendnssec-2.1.10/signer/src/ |
H A D | Makefile.am | 44 signer/signconf.c signer/signconf.h \
|
H A D | Makefile.in | 151 signer/rrset.$(OBJEXT) signer/signconf.$(OBJEXT) \ 190 signer/$(DEPDIR)/rrset.Po signer/$(DEPDIR)/signconf.Po \ 503 signer/signconf.c signer/signconf.h \ 683 signer/signconf.$(OBJEXT): signer/$(am__dirstamp) \ 767 @AMDEP_TRUE@@am__include@ @am__quote@signer/$(DEPDIR)/signconf.Po@am__quote@ # am--include-marker 987 -rm -f signer/$(DEPDIR)/signconf.Po 1076 -rm -f signer/$(DEPDIR)/signconf.Po
|
/dports/dns/opendnssec2/opendnssec-2.1.10/ |
H A D | Makefile.am | 38 …ALL) @INSTALLATIONUSERARG@ @INSTALLATIONGROUPARG@ -d $(DESTDIR)$(localstatedir)/opendnssec/signconf
|
H A D | NEWS | 18 which there are unused keys specified in the signconf. These are 29 a signconf update and state flush command. 134 * Enforce and signconf tasks are now scheduled individually per zone. Resign 142 * signer clear <zone> would assert when signconf wasn't read yet. 314 algorithm in signconf is not SHA1. 501 * OPENDNSSEC-306: Can't delete zone until Enforcer made signconf. 587 * OPENDNSSEC-242: Signer Engine: Could get stuck on load signconf while 588 signconf was not changed. 766 use the serial from the signconf. 845 * signconf.rnc now allows NSEC3 Iterations of 0 [all …]
|
H A D | configure.ac | 240 conf/signconf.xml
|
/dports/dns/opendnssec2/opendnssec-2.1.10/signer/ |
H A D | README | 211 http://www.opendnssec.se/browser/trunk/conf/opendnssec/signconf.xml 214 http://www.opendnssec.se/browser/trunk/conf/opendnssec/signconf.rnc
|