Skip to content
Snippets Groups Projects
Commit 542c8234 authored by Jan Včelák's avatar Jan Včelák :rocket:
Browse files

update manual pages and sample configuration

ref #195
parent 704e2bff
No related branches found
No related tags found
1 merge request!151DNSSEC: signatures refreshing
......@@ -270,9 +270,8 @@ serves as an example of the configuration for knotc(8) and knotd(8).
# Default value: 30d (30 days or 2592000 seconds)
# It is also possible to suffix with unit size [s/m/h/d]
# f.e. 1s = 1 day, 1m = 1 minute, 1h = 1 hour, 1d = 1 day
# The lower limit is because the server will trigger resign when any of the
# signatures expires in 7200 seconds or less and it was chosen as a
# reasonable value with regard to signing overhead.
# The signatures are refreshed one tenth of the signature lifetime before
# the signature expiration (i.e., 3 days before by default)
signature-lifetime 30d;
# Serial policy after DDNS and automatic DNSSEC signing.
......
......@@ -266,9 +266,8 @@ zones {
# Default value: 30d (30 days or 2592000 seconds)
# It is also possible to suffix with unit size [s/m/h/d]
# f.e. 1s = 1 day, 1m = 1 minute, 1h = 1 hour, 1d = 1 day
# The lower limit is because the server will trigger resign when any of the
# signatures expires in less than 7200 seconds and it was chosen as a
# reasonable value with regard to signing overhead.
# The signatures are refreshed one tenth of the signature lifetime before
# the signature expiration (i.e., 3 days before by default)
# signature-lifetime 30d;
# Serial policy after DDNS and automatic DNSSEC signing.
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment