DOKK / manpages / debian 11 / knot / knsec3hash.1.en
KNSEC3HASH(1) Knot DNS KNSEC3HASH(1)

knsec3hash - Simple utility to compute NSEC3 hash

knsec3hash salt algorithm iterations name

This utility generates a NSEC3 hash for a given domain name and parameters of NSEC3 hash.

Specifies a binary salt encoded as a hexadecimal string.
Specifies a hashing algorithm by number. Currently, the only supported algorithm is SHA-1 (number 1).
Specifies the number of additional iterations of the hashing algorithm.
Specifies the domain name to be hashed.

Exit status of 0 means successful operation. Any other exit status indicates an error.

$ knsec3hash c01dcafe 1 10 knot-dns.cz
7PTVGE7QV67EM61ROS9238P5RAKR2DM7 (salt=c01dcafe, hash=1, iterations=10)


$ knsec3hash - 1 0 net
A1RT98BS5QGC9NFI51S9HCI47ULJG6JH (salt=-, hash=1, iterations=0)


RFC 5155 – DNS Security (DNSSEC) Hashed Authenticated Denial of Existence.

knotc(8), knotd(8).

CZ.NIC Labs <https://www.knot-dns.cz>

Copyright 2010–2021, CZ.NIC, z.s.p.o.

2021-03-25 3.0.5