Lines Matching refs:signing

39 $RNDCCMD 10.53.0.3 signing -nsec3param 1 0 0 - nsec3 >/dev/null 2>&1 || ret=1
53 echo_i "checking that an unsupported algorithm is not used for signing ($n)"
72 $RNDCCMD 10.53.0.3 signing -list bits >signing.out.test$n 2>&1 || ret=1
73 keys=$(grep '^Done signing' signing.out.test$n | wc -l)
91 echo_i "checking removal of private type record via 'rndc signing -clear' ($n)"
93 $RNDCCMD 10.53.0.3 signing -list bits >signing.out.test$n 2>&1 || ret=1
94 keys=$(sed -n -e 's/Done signing with key \(.*\)$/\1/p' signing.out.test$n)
96 $RNDCCMD 10.53.0.3 signing -clear ${key} bits >/dev/null || ret=1
102 $RNDCCMD 10.53.0.3 signing -list bits >signing.out.test$n 2>&1 || ret=1
103 num=$(grep "Done signing with" signing.out.test$n | wc -l)
123 echo_i "checking removal of remaining private type record via 'rndc signing -clear all' ($n)"
125 $RNDCCMD 10.53.0.3 signing -clear all bits >/dev/null || ret=1
129 $RNDCCMD 10.53.0.3 signing -list bits >signing.out.test$n 2>&1 || ret=1
130 grep "No signing records found" signing.out.test$n >/dev/null || ans=1
219 $RNDCCMD 10.53.0.3 signing -list noixfr >signing.out.test$n 2>&1 || ret=1
220 keys=$(grep '^Done signing' signing.out.test$n | wc -l)
296 $RNDCCMD 10.53.0.3 signing -list primary >signing.out.test$n 2>&1 || ret=1
297 keys=$(grep '^Done signing' signing.out.test$n | wc -l)
306 echo_i "checking removal of private type record via 'rndc signing -clear' (primary) ($n)"
308 $RNDCCMD 10.53.0.3 signing -list primary >signing.out.test$n 2>&1 || ret=1
309 keys=$(sed -n -e 's/Done signing with key \(.*\)$/\1/p' signing.out.test$n)
311 $RNDCCMD 10.53.0.3 signing -clear ${key} primary >/dev/null || ret=1
317 $RNDCCMD 10.53.0.3 signing -list primary >signing.out.test$n 2>&1 || ret=1
318 num=$(grep "Done signing with" signing.out.test$n | wc -l)
338 echo_i "checking removal of remaining private type record via 'rndc signing -clear' (primary) ($n)"
340 $RNDCCMD 10.53.0.3 signing -clear all primary >/dev/null || ret=1
343 $RNDCCMD 10.53.0.3 signing -list primary >signing.out.test$n 2>&1 || ret=1
344 grep "No signing records found" signing.out.test$n >/dev/null || ans=1
413 $RNDCCMD 10.53.0.3 signing -list dynamic >signing.out.test$n 2>&1 || ret=1
414 keys=$(grep '^Done signing' signing.out.test$n | wc -l)
628 echo_i "checking turning on of inline signing in a secondary zone via reload ($n)"
728 echo_i "check rndc reload allows reuse of inline-signing zones ($n)"
797 echo_i "check 'rndc signing -nsec3param' requests are queued for zones which are not loaded ($n)"
804 # to test that multiple queued "rndc signing -nsec3param" requests are handled
806 $RNDCCMD 10.53.0.3 signing -nsec3param 1 0 0 - retransfer3 >/dev/null 2>&1 || ret=1
807 $RNDCCMD 10.53.0.3 signing -nsec3param none retransfer3 >/dev/null 2>&1 || ret=1
808 $RNDCCMD 10.53.0.3 signing -nsec3param 1 0 0 - retransfer3 >/dev/null 2>&1 || ret=1
830 $RNDCCMD 10.53.0.3 signing -nsec3param 1 0 0 - retransfer3 >/dev/null 2>&1 || ret=1
860 '{ type secondary; primaries { 10.53.0.2; }; file "'$zone'.db"; inline-signing yes; auto-dnssec maintain; };' || ret=1
864 $RNDCCMD 10.53.0.7 signing -list $zone >signing.out.test$n 2>&1 || ret=1
865 keys=$(grep '^Done signing' signing.out.test$n | wc -l)
870 $RNDCCMD 10.53.0.7 signing -nsec3param 1 0 2 12345678 $zone >/dev/null 2>&1 || ret=1
978 echo_i "check inline-signing with an include file ($n)"
1013 '{ type secondary; primaries { 10.53.0.2; }; file "'test-$zone.bk'"; inline-signing yes; auto-dnssec maintain; allow-transfer { any; }; };' || ret=1
1063 echo_i "testing updating inline secure serial via 'rndc signing -serial' ($n)"
1067 $RNDCCMD 10.53.0.3 signing -serial ${newserial:-0} nsec3 >/dev/null 2>&1 || ret=1
1073 echo_i "testing updating inline secure serial via 'rndc signing -serial' with negative change ($n)"
1078 $RNDCCMD 10.53.0.3 signing -serial ${newserial:-0} nsec3 >/dev/null 2>&1 || ret=1
1090 echo_i "testing updating inline secure serial via 'rndc signing -serial' when frozen ($n)"
1096 $RNDCCMD 10.53.0.3 signing -serial ${newserial:-0} nsec3 >/dev/null 2>&1 || ret=1
1103 echo_i "testing updating dynamic serial via 'rndc signing -serial' ($n)"
1107 $RNDCCMD 10.53.0.2 signing -serial ${newserial:-0} bits >/dev/null 2>&1 || ret=1
1113 echo_i "testing updating dynamic serial via 'rndc signing -serial' with negative change ($n)"
1118 $RNDCCMD 10.53.0.2 signing -serial ${newserial:-0} bits >/dev/null 2>&1 || ret=1
1125 echo_i "testing updating dynamic serial via 'rndc signing -serial' when frozen ($n)"
1131 $RNDCCMD 10.53.0.2 signing -serial ${newserial:-0} bits >/dev/null 2>&1 && ret=1
1139 echo_i "testing that inline signing works with inactive ZSK and active KSK ($n)"
1169 echo_i "testing that inline signing works with inactive KSK and active ZSK ($n)"
1222 # does not have any signing keys set up, the response must be unsigned.
1249 # this zone has signing keys set up, the response must be signed.
1253 # Remove the signing keys for this zone.
1277 # Restore the signing keys for this zone.
1306 # zone does have signing keys set up, the response must be signed.
1310 # Remove the signing keys for this zone.
1334 # Restore the signing keys for this zone.
1379 $RNDCCMD 10.53.0.3 signing -list delayedkeys >signing.out.test$n 2>&1 || true
1380 num=$(grep "Done signing with" signing.out.test$n | wc -l)