From: Kees Monshouwer Date: Sat, 16 Nov 2013 22:04:18 +0000 (+0100) Subject: only add ksk DNSKEY records to trustedkeys X-Git-Tag: rec-3.6.0-rc1~342^2~1 X-Git-Url: https://granicus.if.org/sourcecode?a=commitdiff_plain;h=928f10d6346bcd956aec91e2b1bada1ce8493f47;p=pdns only add ksk DNSKEY records to trustedkeys --- diff --git a/regression-tests/00dnssec-grabkeys/command b/regression-tests/00dnssec-grabkeys/command index 40808b5e9..a291ee195 100755 --- a/regression-tests/00dnssec-grabkeys/command +++ b/regression-tests/00dnssec-grabkeys/command @@ -6,7 +6,7 @@ for zone in $(grep zone named.conf | cut -f2 -d\") do if [ "${zone: 0:16}" != "secure-delegated" ] then - drill -p $port -o rd -D dnskey $zone @$nameserver | grep DNSKEY | grep -v '^;' | grep -v AwEAAarTiHhPgvD28WCN8UBXcEcf8f >> trustedkeys + drill -p $port -o rd -D dnskey $zone @$nameserver | grep DNSKEY | grep 257 | grep -v 'RRSIG' | grep -v '^;' | grep -v AwEAAarTiHhPgvD28WCN8UBXcEcf8f >> trustedkeys fi echo "stub-zone:" >> unbound-host.conf echo " name: $zone" >> unbound-host.conf