[Pdns-users] SOA serial number editing on re-signing of a zone / RRSIG changes

Jan-Piet Mens jpmens.dns at gmail.com
Mon Mar 28 07:20:15 UTC 2011


Hi Bert,

> It only took half a week of thinking, apologies for not getting back to you
> earlier. This feature has now been added.

Thank you very much for adding this essential feature for those who
slave PowerDNS zones.

I'm testing this as we speak. Without an SOA-EDIT value, the original
SOA serial is kept, which is good. I haven't looked at the code (which I
might not understand anyway), but it may be useful to have an explicit
"KEEP" for those who wish to add a record to domainmetadata for all
their zones.

> You can set SOA-EDIT to either 'INCEPTION', in which case the SOA serial
> number will be replaced by YYYYMMDD01 of the currently issued RRSIG
> inception, the one that rolls over each Thursday at midnight GMT.

I'm currently testing INCEPTION which appears to work as advertised. :-)
Will PowerDNS send out NOTIFYs at that point, or do we rely on slaves
refreshing the zone?

> I'm pondering 'SERIAL-INCREMENT' that will attempt to upgrade the current
> serial number with the number of weeks that have passed since the original
> serial number found in the SOA record.

FYI, as I use the serial number as a counter, this will probably not be
very useful to me, but it may be for others.

Thanks again, and best regards,

        -JP



More information about the Pdns-users mailing list