[Pdns-users] Automated DNSSEC Keyrollover

Florian Obser florian at narrans.de
Thu May 5 20:53:54 UTC 2022

On 2022-05-05 18:45 +02, Jan-Piet Mens via Pdns-users <pdns-users at mailman.powerdns.com> wrote:
> I haven't looked recently, but it might well be possible with a judicious use of
> pdnsutil(1) to kick a rollover; create new key, wait, remove old keys.

I have done algorithm rolls for my domains using pdnsutil(1). So it can
be done, but it felt like banging rocks together.
It's somewhere on my todo list to write something that uses the api to
automate this. I do hope that someone beats me to it though.

I'm not entirely sure you are real.

