Skip to content

kdig: added [no]crypto option omitting binary dump of keys

Libor Peltan requested to merge kdig_nocrypto into master

Example of nocrypto-ed output:

peltan@peltan:~/master_knot/src$ ./kdig +dnssec -t DNSKEY @193.29.206.1 nic.cz. +nocrypto
;; ->>HEADER<<- opcode: QUERY; status: NOERROR; id: 16024
;; Flags: qr aa rd; QUERY: 1; ANSWER: 4; AUTHORITY: 0; ADDITIONAL: 1

;; EDNS PSEUDOSECTION:
;; Version: 0; flags: do; UDP size: 1232 B; ext-rcode: NOERROR

;; QUESTION SECTION:
;; nic.cz.             		IN	DNSKEY

;; ANSWER SECTION:
nic.cz.             	1800	IN	DNSKEY	256 3 13 [ id = 16836 ]
nic.cz.             	1800	IN	DNSKEY	257 3 13 [ id = 61281 ]
nic.cz.             	1800	IN	RRSIG	DNSKEY 13 2 1800 20170321061608 20170307075002 16836 nic.cz. [ omitted ]
nic.cz.             	1800	IN	RRSIG	DNSKEY 13 2 1800 20170321062401 20170307075002 61281 nic.cz. [ omitted ]

;; Received 399 B
;; Time 2017-03-08 09:46:11 CET
;; From 193.29.206.1@53(UDP) in 11.7 ms
peltan@peltan:~/master_knot/src$ ./kdig +dnssec -t DNSKEY @193.29.206.1 nic.cz. +nocrypto +multiline
;; ->>HEADER<<- opcode: QUERY; status: NOERROR; id: 410
;; Flags: qr aa rd; QUERY: 1; ANSWER: 4; AUTHORITY: 0; ADDITIONAL: 1

;; EDNS PSEUDOSECTION:
;; Version: 0; flags: do; UDP size: 1232 B; ext-rcode: NOERROR

;; QUESTION SECTION:
;; nic.cz.             	 IN DNSKEY

;; ANSWER SECTION:
nic.cz.             	1800 IN DNSKEY 256 3 13 [ omitted ]
				 ; ZSK, ECDSAP256SHA256 (256b), id = 16836
nic.cz.             	1800 IN DNSKEY 257 3 13 [ omitted ]
				 ; KSK, ECDSAP256SHA256 (256b), id = 61281
nic.cz.             	1800 IN RRSIG DNSKEY 13 2 1800 20170321061608 (
				20170307075002 16836 nic.cz. 
				[ omitted ]
				)
nic.cz.             	1800 IN RRSIG DNSKEY 13 2 1800 20170321062401 (
				20170307075002 61281 nic.cz. 
				[ omitted ]
				)

;; Received 399 B
;; Time 2017-03-08 09:46:28 CET
;; From 193.29.206.1@53(UDP) in 11.8 ms
peltan@peltan:~/master_knot/src$ 

Merge request reports