bind9/bin/python/isc/tests/test-policies/01-keysize.pol

53 lines
1,004 B
Text
Raw Normal View History

2016-04-29 01:30:53 -04:00
/*
* Copyright (C) Internet Systems Consortium, Inc. ("ISC")
2016-04-29 01:30:53 -04:00
*
* This Source Code Form is subject to the terms of the Mozilla Public
* License, v. 2.0. If a copy of the MPL was not distributed with this
* file, You can obtain one at http://mozilla.org/MPL/2.0/.
*
* See the COPYRIGHT file distributed with this work for additional
* information regarding copyright ownership.
2016-04-29 01:30:53 -04:00
*/
policy keysize_rsa {
2016-04-29 01:30:53 -04:00
algorithm rsasha1;
coverage 1y;
roll-period zsk 3mo;
pre-publish zsk 2w;
post-publish zsk 2w;
roll-period ksk 1y;
pre-publish ksk 1mo;
post-publish ksk 2mo;
keyttl 1h;
key-size ksk 2048;
key-size zsk 1024;
};
policy keysize_dsa {
2016-04-29 01:30:53 -04:00
algorithm dsa;
coverage 1y;
key-size ksk 2048;
key-size zsk 1024;
};
zone good_rsa.test {
2016-04-29 01:30:53 -04:00
policy keysize_rsa;
};
zone bad_rsa.test {
2016-04-29 01:30:53 -04:00
policy keysize_rsa;
key-size ksk 511;
};
zone good_dsa.test {
2016-04-29 01:30:53 -04:00
policy keysize_dsa;
key-size ksk 1024;
key-size zsk 768;
};
zone bad_dsa.test {
2016-04-29 01:30:53 -04:00
policy keysize_dsa;
key-size ksk 1024;
key-size zsk 769;
};