Jump to first page
 -103
Configuring verifying resolving
name servers
nIn the forwarder you configure the keys you trust as a secure entry point
utrusted-keys {
            Ò.Ó 256 3 1 ÓAbc12..zZ";
u              ÒSECRET-WG.ORGÓ 256 3 1 ÒAQÉQQ=="
u     };
nSys-admins of resolving name servers should verify authenticity of trusted-keys before putting them in zone files
If you decide to test against this key then note that secret-wg.org is a test domain. The key material may change and the zone might be ÔlameÕ or ÔbrokenÕ at times
dig secret-wg.org key

will get you the key material you can verify that out of band.

trusted-keys { Òsecret-wg.org.Ó 256 3 1 ÒAQO088/mqG4hzGzg6kjpZUCeUTBlDhpgqjWTGaE2ELLhqScS   Oy8WzRSw/YGog7a8XqOjtoBPrQsT6vtR6dJ/CBeK7fupPGiJ   n0Ec0QvT6u4VdXndvWYCU+i36gTqmsIMVoC542JnDa9hjWCz
gyVAyz5kIU8Nvsgcx/JafIPeTbqnQQ==Ò;

};