Commit d335ab78 authored by Daniel Salzman's avatar Daniel Salzman

dnssec: improve submission log message

parent 32596f8a
...@@ -369,7 +369,7 @@ lines of :rfc:`6781#section-4.1.2`:: ...@@ -369,7 +369,7 @@ lines of :rfc:`6781#section-4.1.2`::
2017-10-24T15:41:22 info: [example.com.] DNSSEC, signing started 2017-10-24T15:41:22 info: [example.com.] DNSSEC, signing started
2017-10-24T15:41:22 info: [example.com.] DNSSEC, successfully signed 2017-10-24T15:41:22 info: [example.com.] DNSSEC, successfully signed
2017-10-24T15:41:22 info: [example.com.] DNSSEC, next signing at 2017-10-24T15:41:23 2017-10-24T15:41:22 info: [example.com.] DNSSEC, next signing at 2017-10-24T15:41:23
2017-10-24T15:41:22 notice: [example.com.] DNSSEC, published CDS, CDNSKEY for submission 2017-10-24T15:41:22 notice: [example.com.] DNSSEC, KSK submission, waiting for confirmation
At this point new KSK has to be submitted to the parent zone. Knot detects the updated parent's DS At this point new KSK has to be submitted to the parent zone. Knot detects the updated parent's DS
record automatically if :ref:`parent DS check<Submission section>` is configured, otherwise the record automatically if :ref:`parent DS check<Submission section>` is configured, otherwise the
...@@ -435,7 +435,7 @@ server is reloaded, the rollover continues along the lines of :rfc:`6781#section ...@@ -435,7 +435,7 @@ server is reloaded, the rollover continues along the lines of :rfc:`6781#section
2017-10-24T14:53:44 info: [example.com.] DNSSEC, signing started 2017-10-24T14:53:44 info: [example.com.] DNSSEC, signing started
2017-10-24T14:53:44 info: [example.com.] DNSSEC, successfully signed 2017-10-24T14:53:44 info: [example.com.] DNSSEC, successfully signed
2017-10-24T14:53:44 info: [example.com.] DNSSEC, next signing at 2017-10-31T13:52:37 2017-10-24T14:53:44 info: [example.com.] DNSSEC, next signing at 2017-10-31T13:52:37
2017-10-24T14:53:44 notice: [example.com.] DNSSEC, published CDS, CDNSKEY for submission 2017-10-24T14:53:44 notice: [example.com.] DNSSEC, KSK submission, waiting for confirmation
Again, KSK submission follows as in :ref:`KSK rollover example<DNSSEC ksk rollover example>`.:: Again, KSK submission follows as in :ref:`KSK rollover example<DNSSEC ksk rollover example>`.::
......
...@@ -43,12 +43,7 @@ void event_dnssec_reschedule(conf_t *conf, zone_t *zone, ...@@ -43,12 +43,7 @@ void event_dnssec_reschedule(conf_t *conf, zone_t *zone,
log_dnssec_next(zone->name, (time_t)refresh_at); log_dnssec_next(zone->name, (time_t)refresh_at);
if (refresh->plan_ds_query) { if (refresh->plan_ds_query) {
conf_val_t id = conf_zone_get(conf, C_DNSSEC_POLICY, zone->name); log_zone_notice(zone->name, "DNSSEC, KSK submission, waiting for confirmation");
conf_val_t val = conf_id_get(conf, C_POLICY, C_CHILD_RECORDS, &id);
if (conf_opt(&val) != CHILD_RECORDS_NONE) {
log_zone_notice(zone->name, "DNSSEC, published CDS, CDNSKEY "
"for submission");
}
zone->timers.next_parent_ds_q = now; zone->timers.next_parent_ds_q = now;
} }
......
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment