On 12/24/2015 12:54 PM, Robert Moskowitz wrote: > > Right now all I want working is rndc. dnssec will be worked on come > spring. > > With all I do in security, it bothers me that the Centos documentation > specifies MD5. Should be at least SHA1, if not SHA256. > > Oh okay I apoligize, I mis-read your post as asking about generating DNSSEC keys, due to the command name you were using. I have no clue about bind / rndc, I use NSD for authoritative. Sorry about the noise.