Home | History | Annotate | Line # | Download | only in namedb
bind.keys revision 1.1.10.2
      1 /*	$NetBSD: bind.keys,v 1.1.10.2 2014/05/22 11:27:20 yamt Exp $	*/
      2 /* Id: bind.keys,v 1.7 2011-01-03 23:45:07 each Exp  */
      3 # The bind.keys file is used to override the built-in DNSSEC trust anchors
      4 # which are included as part of BIND 9.  As of the current release, the only
      5 # trust anchors it contains are those for the DNS root zone ("."), and for
      6 # the ISC DNSSEC Lookaside Validation zone ("dlv.isc.org").  Trust anchors
      7 # for any other zones MUST be configured elsewhere; if they are configured
      8 # here, they will not be recognized or used by named.
      9 #
     10 # The built-in trust anchors are provided for convenience of configuration.
     11 # They are not activated within named.conf unless specifically switched on.
     12 # To use the built-in root key, set "dnssec-validation auto;" in
     13 # named.conf options.  To use the built-in DLV key, set
     14 # "dnssec-lookaside auto;".  Without these options being set,
     15 # the keys in this file are ignored.
     16 #
     17 # This file is NOT expected to be user-configured.
     18 #
     19 # These keys are current as of January 2011.  If any key fails to
     20 # initialize correctly, it may have expired.  In that event you should
     21 # replace this file with a current version.  The latest version of
     22 # bind.keys can always be obtained from ISC at https://www.isc.org/bind-keys.
     23 
     24 managed-keys {
     25 	# ISC DLV: See https://www.isc.org/solutions/dlv for details.
     26         # NOTE: This key is activated by setting "dnssec-lookaside auto;"
     27         # in named.conf.
     28 	dlv.isc.org. initial-key 257 3 5 "BEAAAAPHMu/5onzrEE7z1egmhg/WPO0+juoZrW3euWEn4MxDCE1+lLy2
     29 		brhQv5rN32RKtMzX6Mj70jdzeND4XknW58dnJNPCxn8+jAGl2FZLK8t+
     30 		1uq4W+nnA3qO2+DL+k6BD4mewMLbIYFwe0PG73Te9fZ2kJb56dhgMde5
     31 		ymX4BI/oQ+cAK50/xvJv00Frf8kw6ucMTwFlgPe+jnGxPPEmHAte/URk
     32 		Y62ZfkLoBAADLHQ9IrS2tryAe7mbBZVcOwIeU/Rw/mRx/vwwMCTgNboM
     33 		QKtUdvNXDrYJDSHZws3xiRXF1Rf+al9UmZfSav/4NWLKjHzpT59k/VSt
     34 		TDN0YUuWrBNh";
     35 
     36 	# ROOT KEY: See https://data.iana.org/root-anchors/root-anchors.xml
     37 	# for current trust anchor information.
     38         # NOTE: This key is activated by setting "dnssec-validation auto;"
     39         # in named.conf.
     40 	. initial-key 257 3 8 "AwEAAagAIKlVZrpC6Ia7gEzahOR+9W29euxhJhVVLOyQbSEW0O8gcCjF
     41 		FVQUTf6v58fLjwBd0YI0EzrAcQqBGCzh/RStIoO8g0NfnfL2MTJRkxoX
     42 		bfDaUeVPQuYEhg37NZWAJQ9VnMVDxP/VHL496M/QZxkjf5/Efucp2gaD
     43 		X6RS6CXpoY68LsvPVjR0ZSwzz1apAzvN9dlzEheX7ICJBBtuA6G3LQpz
     44 		W5hOA2hzCTMjJPJ8LbqF6dsV6DoBQzgul0sGIcGOYl7OyQdXfZ57relS
     45 		Qageu+ipAdTTJ25AsRTAoub8ONGcLmqrAmRLKBP1dfwhYB4N7knNnulq
     46 		QxA+Uk1ihz0=";
     47 };
     48