<div dir="ltr">Hello,<div><br></div><div><br></div><div>The man page says :</div><div><dt><b>-o</b> <i>origin</i>
</dt><dd>Use
<p>this as the origin of the zoneĀ </p></dd></div><div><br></div><div>So, if the zone I want to sign with DNSSEC is "mydomain.tld", I have to use the command :</div><div>ldns-signzone -o tld zonefile $zsk $ksk<br></div><div><br></div><div>Correct ?</div><div><br></div><div>And about the NSEC3 signature, what are the usable algorithms with the "-n -a" options .</div><div><br></div><div><br></div><div>Sorry if my questions are stupid but I'am discovering the DNSSEC tools.</div></div>