/dports/dns/knot3/knot-3.1.5/src/knot/dnssec/ |
H A D | key-events.c | 47 key->is_ksk == want_ksk && in key_id_present() 228 ready_ksk = (ready_ksk || key->is_ksk); in running_rollover() 397 if (key->is_ksk) { in next_action() 491 res.ksk = key->is_ksk; in next_action() 503 assert(newkey->is_ksk); in submit_key() 508 if (key->is_ksk && !key->is_pub_only && in submit_key() 520 if (newkey->is_ksk) { in exec_new_signatures() 528 if (((newkey->is_ksk && key->is_ksk) || (newkey->is_zsk && key->is_zsk && !key->is_ksk)) in exec_new_signatures() 540 } else if (key->is_ksk) { in exec_new_signatures() 550 if (newkey->is_ksk) { in exec_new_signatures() [all …]
|
H A D | zone-keys.h | 38 bool is_ksk; member 75 inline static uint16_t dnskey_flags(bool is_ksk) in dnskey_flags() argument 77 return is_ksk ? DNSKEY_FLAGS_KSK : DNSKEY_FLAGS_ZSK; in dnskey_flags()
|
H A D | zone-keys.c | 163 key->is_ksk = (flags & DNSKEY_GENERATE_KSK); in kdnssec_generate_key() 320 zone_key->is_ksk = kasp_key->is_ksk; in set_key() 324 zone_key->is_ready = (zone_key->is_ksk && is_ready(timing, now)); in set_key() 327 …zone_key->is_ksk_active_plus = zone_key->is_public && zone_key->is_ksk && !zone_key->is_active; //… in set_key() 344 zone_key->is_ksk_active_plus = zone_key->is_ksk; in set_key() 352 if (zone_key->is_ksk && in set_key() 411 if (key->is_ksk && key->is_public) { alg_usage[alg] |= 1; } in walk_algorithms() 413 if (key->is_ksk && (key->is_active || key->is_ksk_active_plus)) { alg_usage[alg] |= 4; } in walk_algorithms() 489 (key->is_ksk ? (key->is_zsk ? ", CSK" : ", KSK") : ""), in log_key_info()
|
H A D | zone-sign.c | 337 if (!key_used(key->is_ksk, key->is_zsk, covered->type, in knot_validate_rrsigs() 771 assert(key->is_ksk); in knot_zone_sign_get_cdnskeys() 784 if (key->is_ksk && key->is_active && !key->is_ready) { in knot_zone_sign_get_cdnskeys() 934 bool active_ksk = ((key->is_active || key->is_ksk_active_plus) && key->is_ksk); in knot_zone_sign_use_key() 940 assert(key->is_zsk || key->is_ksk); in knot_zone_sign_use_key()
|
H A D | ds_query.c | 248 assert(key->is_ksk); in knot_parent_ds_query()
|
/dports/dns/knot3-lib/knot-3.1.5/src/knot/dnssec/ |
H A D | key-events.c | 47 key->is_ksk == want_ksk && in key_id_present() 228 ready_ksk = (ready_ksk || key->is_ksk); in running_rollover() 397 if (key->is_ksk) { in next_action() 491 res.ksk = key->is_ksk; in next_action() 503 assert(newkey->is_ksk); in submit_key() 508 if (key->is_ksk && !key->is_pub_only && in submit_key() 520 if (newkey->is_ksk) { in exec_new_signatures() 528 if (((newkey->is_ksk && key->is_ksk) || (newkey->is_zsk && key->is_zsk && !key->is_ksk)) in exec_new_signatures() 540 } else if (key->is_ksk) { in exec_new_signatures() 550 if (newkey->is_ksk) { in exec_new_signatures() [all …]
|
H A D | zone-keys.h | 38 bool is_ksk; member 75 inline static uint16_t dnskey_flags(bool is_ksk) in dnskey_flags() argument 77 return is_ksk ? DNSKEY_FLAGS_KSK : DNSKEY_FLAGS_ZSK; in dnskey_flags()
|
H A D | zone-keys.c | 163 key->is_ksk = (flags & DNSKEY_GENERATE_KSK); in kdnssec_generate_key() 320 zone_key->is_ksk = kasp_key->is_ksk; in set_key() 324 zone_key->is_ready = (zone_key->is_ksk && is_ready(timing, now)); in set_key() 327 …zone_key->is_ksk_active_plus = zone_key->is_public && zone_key->is_ksk && !zone_key->is_active; //… in set_key() 344 zone_key->is_ksk_active_plus = zone_key->is_ksk; in set_key() 352 if (zone_key->is_ksk && in set_key() 411 if (key->is_ksk && key->is_public) { alg_usage[alg] |= 1; } in walk_algorithms() 413 if (key->is_ksk && (key->is_active || key->is_ksk_active_plus)) { alg_usage[alg] |= 4; } in walk_algorithms() 489 (key->is_ksk ? (key->is_zsk ? ", CSK" : ", KSK") : ""), in log_key_info()
|
H A D | zone-sign.c | 337 if (!key_used(key->is_ksk, key->is_zsk, covered->type, in knot_validate_rrsigs() 771 assert(key->is_ksk); in knot_zone_sign_get_cdnskeys() 784 if (key->is_ksk && key->is_active && !key->is_ready) { in knot_zone_sign_get_cdnskeys() 934 bool active_ksk = ((key->is_active || key->is_ksk_active_plus) && key->is_ksk); in knot_zone_sign_use_key() 940 assert(key->is_zsk || key->is_ksk); in knot_zone_sign_use_key()
|
H A D | ds_query.c | 248 assert(key->is_ksk); in knot_parent_ds_query()
|
/dports/dns/knot3/knot-3.1.5/src/knot/dnssec/kasp/ |
H A D | kasp_zone.c | 126 assert(params->is_ksk || !params->is_csk); in params2kaspkey() 127 key->is_ksk = params->is_ksk; in params2kaspkey() 128 key->is_zsk = (params->is_csk || !params->is_ksk); in params2kaspkey() 141 params->is_ksk = key->is_ksk; in kaspkey2params() 142 params->is_csk = (key->is_ksk && key->is_zsk); in kaspkey2params() 379 zone->keys[i].is_ksk = (knot_dnskey_flags(zkey) == DNSKEY_FLAGS_KSK); in kasp_zone_keys_from_rr() 380 zone->keys[i].is_zsk = policy_single_type_signing || !zone->keys[i].is_ksk; in kasp_zone_keys_from_rr()
|
H A D | policy.h | 46 bool is_ksk; member 63 bool is_ksk; member
|
H A D | kasp_db.c | 119 flags |= (params->is_ksk ? 0x01 : 0); in params_serialize() 153 params->is_ksk = ((flags & 0x01) ? true : false); in params_deserialize() 167 if ((flags & 0x02) && (params->is_ksk || !params->is_csk)) { in params_deserialize()
|
/dports/dns/knot3-lib/knot-3.1.5/src/knot/dnssec/kasp/ |
H A D | kasp_zone.c | 126 assert(params->is_ksk || !params->is_csk); in params2kaspkey() 127 key->is_ksk = params->is_ksk; in params2kaspkey() 128 key->is_zsk = (params->is_csk || !params->is_ksk); in params2kaspkey() 141 params->is_ksk = key->is_ksk; in kaspkey2params() 142 params->is_csk = (key->is_ksk && key->is_zsk); in kaspkey2params() 379 zone->keys[i].is_ksk = (knot_dnskey_flags(zkey) == DNSKEY_FLAGS_KSK); in kasp_zone_keys_from_rr() 380 zone->keys[i].is_zsk = policy_single_type_signing || !zone->keys[i].is_ksk; in kasp_zone_keys_from_rr()
|
H A D | policy.h | 46 bool is_ksk; member 63 bool is_ksk; member
|
H A D | kasp_db.c | 119 flags |= (params->is_ksk ? 0x01 : 0); in params_serialize() 153 params->is_ksk = ((flags & 0x01) ? true : false); in params_deserialize() 167 if ((flags & 0x02) && (params->is_ksk || !params->is_csk)) { in params_deserialize()
|
/dports/dns/knot3-lib/knot-3.1.5/src/utils/keymgr/ |
H A D | functions.c | 231 if ((kasp_key->is_ksk && (flags & DNSKEY_GENERATE_KSK)) && in keymgr_generate_key() 426 kkey->is_ksk = (dnssec_key_get_flags(kkey->key) == DNSKEY_FLAGS_KSK); in keymgr_import_bind() 427 kkey->is_zsk = !kkey->is_ksk; in keymgr_import_bind() 546 kkey->is_ksk = (flags & DNSKEY_GENERATE_KSK); in import_key() 815 …kdnssec_generate_flags_t flags = ((key->is_ksk ? DNSKEY_GENERATE_KSK : 0) | (key->is_zsk ? DNSKEY_… in keymgr_set_timing() 823 if (key->is_ksk != (bool)(flags & DNSKEY_GENERATE_KSK) || in keymgr_set_timing() 827 key->is_ksk = (flags & DNSKEY_GENERATE_KSK); in keymgr_set_timing() 863 (key->is_ksk ? (key->is_zsk ? COL_YELW(c) : COL_RED(c)) : COL_GRN(c)), in print_key_brief() 864 (key->is_ksk ? (key->is_zsk ? "CSK" : "KSK") : "ZSK"), in print_key_brief() 908 (key->is_ksk ? "yes" : "no "), (key->is_zsk ? "yes" : "no "), in print_key_full()
|
H A D | main.c | 219 if (kctx.zone->keys[i].is_ksk) { in key_command()
|
/dports/dns/knot3/knot-3.1.5/src/utils/keymgr/ |
H A D | functions.c | 231 if ((kasp_key->is_ksk && (flags & DNSKEY_GENERATE_KSK)) && in keymgr_generate_key() 426 kkey->is_ksk = (dnssec_key_get_flags(kkey->key) == DNSKEY_FLAGS_KSK); in keymgr_import_bind() 427 kkey->is_zsk = !kkey->is_ksk; in keymgr_import_bind() 546 kkey->is_ksk = (flags & DNSKEY_GENERATE_KSK); in import_key() 815 …kdnssec_generate_flags_t flags = ((key->is_ksk ? DNSKEY_GENERATE_KSK : 0) | (key->is_zsk ? DNSKEY_… in keymgr_set_timing() 823 if (key->is_ksk != (bool)(flags & DNSKEY_GENERATE_KSK) || in keymgr_set_timing() 827 key->is_ksk = (flags & DNSKEY_GENERATE_KSK); in keymgr_set_timing() 863 (key->is_ksk ? (key->is_zsk ? COL_YELW(c) : COL_RED(c)) : COL_GRN(c)), in print_key_brief() 864 (key->is_ksk ? (key->is_zsk ? "CSK" : "KSK") : "ZSK"), in print_key_brief() 908 (key->is_ksk ? "yes" : "no "), (key->is_zsk ? "yes" : "no "), in print_key_full()
|
H A D | main.c | 219 if (kctx.zone->keys[i].is_ksk) { in key_command()
|
/dports/dns/bind-tools/bind-9.16.27/lib/dns/ |
H A D | zoneverify.c | 1469 dns_rdata_t *keyrdata, bool is_ksk) { in check_dnskey_sigs() argument 1477 active_keys = (is_ksk ? vctx->ksk_algorithms : vctx->zsk_algorithms); in check_dnskey_sigs() 1478 standby_keys = (is_ksk ? vctx->standby_ksk : vctx->standby_zsk); in check_dnskey_sigs() 1479 goodkey = (is_ksk ? &vctx->goodksk : &vctx->goodzsk); in check_dnskey_sigs() 1487 if (!is_ksk && in check_dnskey_sigs() 1600 bool is_ksk; in check_dnskey() local 1608 is_ksk = ((dnskey.flags & DNS_KEYFLAG_KSK) != 0); in check_dnskey() 1653 check_dnskey_sigs(vctx, &dnskey, &rdata, is_ksk); in check_dnskey()
|
/dports/dns/bind916/bind-9.16.27/lib/dns/ |
H A D | zoneverify.c | 1469 dns_rdata_t *keyrdata, bool is_ksk) { in check_dnskey_sigs() argument 1477 active_keys = (is_ksk ? vctx->ksk_algorithms : vctx->zsk_algorithms); in check_dnskey_sigs() 1478 standby_keys = (is_ksk ? vctx->standby_ksk : vctx->standby_zsk); in check_dnskey_sigs() 1479 goodkey = (is_ksk ? &vctx->goodksk : &vctx->goodzsk); in check_dnskey_sigs() 1487 if (!is_ksk && in check_dnskey_sigs() 1600 bool is_ksk; in check_dnskey() local 1608 is_ksk = ((dnskey.flags & DNS_KEYFLAG_KSK) != 0); in check_dnskey() 1653 check_dnskey_sigs(vctx, &dnskey, &rdata, is_ksk); in check_dnskey()
|
/dports/dns/samba-nsupdate/bind-9.16.5/lib/dns/ |
H A D | zoneverify.c | 1475 dns_rdata_t *keyrdata, bool is_ksk) { in check_dnskey_sigs() argument 1483 active_keys = (is_ksk ? vctx->ksk_algorithms : vctx->zsk_algorithms); in check_dnskey_sigs() 1484 standby_keys = (is_ksk ? vctx->standby_ksk : vctx->standby_zsk); in check_dnskey_sigs() 1485 goodkey = (is_ksk ? &vctx->goodksk : &vctx->goodzsk); in check_dnskey_sigs() 1493 if (!is_ksk && in check_dnskey_sigs() 1606 bool is_ksk; in check_dnskey() local 1614 is_ksk = ((dnskey.flags & DNS_KEYFLAG_KSK) != 0); in check_dnskey() 1657 check_dnskey_sigs(vctx, &dnskey, &rdata, is_ksk); in check_dnskey()
|
/dports/dns/bind9-devel/bind9-e112afa15668bd3b1baed59df2d21e01b46da15e/lib/dns/ |
H A D | zoneverify.c | 1466 dns_rdata_t *keyrdata, bool is_ksk) { in check_dnskey_sigs() argument 1474 active_keys = (is_ksk ? vctx->ksk_algorithms : vctx->zsk_algorithms); in check_dnskey_sigs() 1475 standby_keys = (is_ksk ? vctx->standby_ksk : vctx->standby_zsk); in check_dnskey_sigs() 1476 goodkey = (is_ksk ? &vctx->goodksk : &vctx->goodzsk); in check_dnskey_sigs() 1484 if (!is_ksk && in check_dnskey_sigs() 1597 bool is_ksk; in check_dnskey() local 1605 is_ksk = ((dnskey.flags & DNS_KEYFLAG_KSK) != 0); in check_dnskey() 1650 check_dnskey_sigs(vctx, &dnskey, &rdata, is_ksk); in check_dnskey()
|
/dports/dns/dnsviz/dnsviz-0.9.2/dnsviz/viz/ |
H A D | dnssec.py | 1898 is_ksk = bool([x for x in in_edges if x[0].startswith('DNSKEY-')]) 1903 if is_ksk:
|