xref: /netbsd-src/external/mpl/bind/dist/bin/tests/system/rootkeysentinel/ns2/sign.sh (revision 9fd8799cb5ceb66c69f2eb1a6d26a1d587ba1f1e)
1#!/bin/sh -e
2#
3# Copyright (C) Internet Systems Consortium, Inc. ("ISC")
4#
5# This Source Code Form is subject to the terms of the Mozilla Public
6# License, v. 2.0. If a copy of the MPL was not distributed with this
7# file, You can obtain one at http://mozilla.org/MPL/2.0/.
8#
9# See the COPYRIGHT file distributed with this work for additional
10# information regarding copyright ownership.
11
12oldid=${1:-00000}
13newid=`expr \( ${oldid} + 1000 \) % 65536`
14newid=`expr "0000${newid}" : '.*\(.....\)$'`
15badid=`expr \( ${oldid} + 7777 \) % 65536`
16badid=`expr "0000${badid}" : '.*\(.....\)$'`
17
18SYSTEMTESTTOP=../..
19. $SYSTEMTESTTOP/conf.sh
20
21zone=example.
22infile=example.db.in
23zonefile=example.db
24
25keyname1=`$KEYGEN -q -a $DEFAULT_ALGORITHM -b $DEFAULT_BITS -n zone $zone`
26keyname2=`$KEYGEN -q -a $DEFAULT_ALGORITHM -b $DEFAULT_BITS -n zone $zone`
27
28cat $infile $keyname1.key $keyname2.key >$zonefile
29echo root-key-sentinel-is-ta-$oldid A 10.53.0.1 >> $zonefile
30echo root-key-sentinel-not-ta-$oldid A 10.53.0.2 >> $zonefile
31echo root-key-sentinel-is-ta-$newid A 10.53.0.3 >> $zonefile
32echo root-key-sentinel-not-ta-$newid A 10.53.0.4 >> $zonefile
33echo old-is-ta CNAME root-key-sentinel-is-ta-$oldid >> $zonefile
34echo old-not-ta CNAME root-key-sentinel-not-ta-$oldid >> $zonefile
35echo new-is-ta CNAME root-key-sentinel-is-ta-$newid >> $zonefile
36echo new-not-ta CNAME root-key-sentinel-not-ta-$newid >> $zonefile
37echo bad-is-ta CNAME root-key-sentinel-is-ta-$badid >> $zonefile
38echo bad-not-ta CNAME root-key-sentinel-not-ta-$badid >> $zonefile
39
40$SIGNER -P -g -o $zone -k $keyname1 $zonefile $keyname2 > /dev/null
41