Just one conditional
This commit is contained in:
parent
34478d25da
commit
0b674de1ed
@ -6,14 +6,9 @@ DOMAIN="$3"
|
|||||||
KEY_DIRECTORY="${4:-${CACHEDIR}/${NAME}}"
|
KEY_DIRECTORY="${4:-${CACHEDIR}/${NAME}}"
|
||||||
RANDOM_DEVICE="$5"
|
RANDOM_DEVICE="$5"
|
||||||
NSEC3_SALT="$6"
|
NSEC3_SALT="$6"
|
||||||
|
ZONE_FILE="$7"
|
||||||
PATH=/bin:/sbin:/usr/bin:/usr/sbin
|
PATH=/bin:/sbin:/usr/bin:/usr/sbin
|
||||||
|
|
||||||
if [ "${DOMAIN}" == "." ]; then
|
|
||||||
ZONE_FILE=root
|
|
||||||
else
|
|
||||||
ZONE_FILE="${DOMAIN}"
|
|
||||||
fi
|
|
||||||
|
|
||||||
dnssec-keygen -a RSASHA256 -b 1024 -r "${RANDOM_DEVICE}" -K "${KEY_DIRECTORY}" "${DOMAIN}"
|
dnssec-keygen -a RSASHA256 -b 1024 -r "${RANDOM_DEVICE}" -K "${KEY_DIRECTORY}" "${DOMAIN}"
|
||||||
dnssec-keygen -a RSASHA256 -b 2048 -r "${RANDOM_DEVICE}" -f KSK -K "${KEY_DIRECTORY}" "${DOMAIN}"
|
dnssec-keygen -a RSASHA256 -b 2048 -r "${RANDOM_DEVICE}" -f KSK -K "${KEY_DIRECTORY}" "${DOMAIN}"
|
||||||
|
|
||||||
|
|||||||
@ -126,7 +126,8 @@ define bind::zone (
|
|||||||
if $dnssec {
|
if $dnssec {
|
||||||
exec { "dnssec-keygen-${name}":
|
exec { "dnssec-keygen-${name}":
|
||||||
command => "/usr/local/bin/dnssec-init '${cachedir}' '${name}'\
|
command => "/usr/local/bin/dnssec-init '${cachedir}' '${name}'\
|
||||||
'${_domain}' '${key_directory}' '${random_device}' '${nsec3_salt}'",
|
'${_domain}' '${key_directory}' '${random_device}' '${nsec3_salt}'\
|
||||||
|
'${zone_file}'",
|
||||||
cwd => $cachedir,
|
cwd => $cachedir,
|
||||||
user => $bind_user,
|
user => $bind_user,
|
||||||
creates => "${cachedir}/${name}/${zone_file}.signed",
|
creates => "${cachedir}/${name}/${zone_file}.signed",
|
||||||
|
|||||||
Loading…
Reference in New Issue
Block a user