Import the Updated KASP

  1. Initialize the OpenDNSSEC Database with the command below.

›_ Console

# ods-enforcer-db-setup 
image-3285745808-1.jpg

Set up OpenDNSSEC output

  1. Start the OpenDNSSEC daemon.

›_ Console

# ods-control start 
image-3285745808-2.jpg

Start OpenDNSSEC daemon

Refer to the OpenDNSSEC Documentation for detailed Information regarding the Enforcer and Signer at https://wiki.opendnssec.org/.

  1. To sign zones, you need to give OpenDNSSEC information on the policy of how to sign zones. Import the policy described in /etc/opendnssec/kasp.xml with the below command.

›_ Console

# ods-enforcer policy import 
image-3285745808-4.jpg

Import Open DNSSEC policy output