On Friday, 3 February 2023 at 10:03 (+0000), ogarcia@xxxxxxxxx wrote:
I don't suppose you have a similar replacement for my other
dependency on the bind package, dnssec-signzone?
As a command I personally do not know of any replacement. But if you
simply use `dnssec-signzone` to check the DNSSEC status of a domain you
can pull online tools like https://dnssec-analyzer.verisignlabs.com/
(not that it is the best, but it is something).
No, I need to actually locally sign zonefiles for my own DNSSEC. Then
even `resolvectl query` (part of base!) can check their DNSSEC status.
Jaron