#!/bin/bash set -e cd work mkdir -p tmp cp db.root tmp/zone.dns for key in `ls K.*.key` do echo "\$INCLUDE $key" >> tmp/zone.dns done dnssec-signzone -A -3 $(openssl rand -hex 16) -N INCREMENT -o . -t tmp/zone.dns mv tmp/zone.dns.signed ../root.signed.dns rm tmp/*