dnssec key events too often?

Sten Carlsen stenc at s-carlsen.dk
Fri Jan 27 18:03:23 UTC 2017


Hi all

I have recently started using dnssec on my authoritative zones. I have
bind 9.9.4 (Centos7).

I see for each zone:

...

    general: info: zone s-carlsen.dk/IN/external (signed): next key event: 26-Jan-2017 02:03:40.860: 1 Time(s)
    general: info: zone s-carlsen.dk/IN/external (signed): next key event: 26-Jan-2017 03:03:40.860: 1 Time(s)
    general: info: zone s-carlsen.dk/IN/external (signed): next key event: 26-Jan-2017 04:03:40.860: 1 Time(s)
    general: info: zone s-carlsen.dk/IN/external (signed): next key event: 26-Jan-2017 05:03:40.861: 1 Time(s)

...

This happens every hour, I think this is probably way too often? Access to the name in question is probably a few times pr. day.

The only reasonable conclusion is that I have done something stupid or not done the right thing.

Question: what stupid thing might I have done (how to fix?)  or what did
I miss to do?

-- 
Best regards

Sten Carlsen

No improvements come from shouting:

       "MALE BOVINE MANURE!!!" 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.isc.org/pipermail/bind-users/attachments/20170127/f436fa32/attachment.html>


More information about the bind-users mailing list