Package: opendnssec-enforcer Version: 1:1.4.6-6 Severity: important Hi!
Basically every time I start -enforcer and -signer together I get the mentioned error message (longer log excerpt attached). This is especially annoying as opendnssec never works after booting the machine. I can mostly work around by starting the enforcer around :15 (signer seems to do signing around :45) and wait for several minutes (at least untill enforcer starts sleeping). But this really indicates some of the locking goes wrong? Christoph [0] ERROR: error executing SQL - cannot start a transaction within a transaction -- System Information: Debian Release: 8.3 APT prefers stable APT policy: (990, 'stable'), (500, 'oldstable') Architecture: mipsel (mips64) Kernel: Linux 3.16.0-4-loongson-2f Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) Shell: /bin/sh linked to /bin/dash Init: systemd (via /run/systemd/system) Versions of packages opendnssec-enforcer depends on: ii dpkg 1.17.26 ii opendnssec-enforcer-sqlite3 [opendnssec-enforcer-backend] 1:1.4.6-6 ii procps 2:3.3.9-9 Versions of packages opendnssec-enforcer recommends: ii opendnssec 1:1.4.6-6 ii opendnssec-signer 1:1.4.6-6 ii softhsm 1.3.7-2 opendnssec-enforcer suggests no packages. -- no debconf information
-- Logs begin at Tue 2015-11-17 16:05:42 CET, end at Tue 2016-02-23 14:34:00 CET. -- Feb 23 03:17:08 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'kbsd.xyz' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 03:17:08 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/kbsd.xyz.xml Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Zone coders-nemesis.eu found. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Policy for coders-nemesis.eu set to default. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/coders-nemesis.eu.xml. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'coders-nemesis.eu' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 03:17:08 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/coders-nemesis.eu.xml Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Zone jbn-bobingen.de found. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Policy for jbn-bobingen.de set to default. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/jbn-bobingen.de.xml. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'jbn-bobingen.de' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 03:17:08 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/jbn-bobingen.de.xml Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Zone fau.fail found. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Policy for fau.fail set to default. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/fau.fail.xml. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'fau.fail' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 03:17:08 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/fau.fail.xml Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Zone siccegge.dn found. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Policy for siccegge.dn set to default. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/siccegge.dn.xml. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'siccegge.dn' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 03:17:08 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/siccegge.dn.xml Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Zone 51.1.10.in-addr.arpa found. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Policy for 51.1.10.in-addr.arpa set to default. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/51.1.10.in-addr.arpa.xml. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone '51.1.10.in-addr.arpa' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 03:17:08 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/51.1.10.in-addr.arpa.xml Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Zone faust.ninja found. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Policy for faust.ninja set to default. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/faust.ninja.xml. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'faust.ninja' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 03:17:08 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/faust.ninja.xml Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Zone fahrplan.top found. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Policy for fahrplan.top set to default. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/fahrplan.top.xml. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'fahrplan.top' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 03:17:08 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/fahrplan.top.xml Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Zone 32c3-wiki.top found. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Policy for 32c3-wiki.top set to default. Feb 23 03:17:08 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/32c3-wiki.top.xml. Feb 23 03:17:09 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/32c3-wiki.top.xml Feb 23 03:17:09 oteiza ods-enforcerd[28101]: Zone rfc.dn found. Feb 23 03:17:09 oteiza ods-enforcerd[28101]: Policy for rfc.dn set to default. Feb 23 03:17:09 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/rfc.dn.xml. Feb 23 03:17:09 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/rfc.dn.xml Feb 23 03:17:09 oteiza ods-enforcerd[28101]: Zone 23.12.172.in-addr.arpa found. Feb 23 03:17:09 oteiza ods-enforcerd[28101]: Policy for 23.12.172.in-addr.arpa set to default. Feb 23 03:17:09 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/23.12.172.in-addr.arpa.xml. Feb 23 03:17:09 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/23.12.172.in-addr.arpa.xml Feb 23 03:17:09 oteiza ods-enforcerd[28101]: Disconnecting from Database... Feb 23 03:17:09 oteiza ods-enforcerd[28101]: Sleeping for 3600 seconds. Feb 23 04:17:09 oteiza ods-enforcerd[28101]: HSM connection open. Feb 23 04:17:09 oteiza ods-enforcerd[28101]: Reading config "/etc/opendnssec/conf.xml" Feb 23 04:17:09 oteiza ods-enforcerd[28101]: Reading config schema "/usr/share/opendnssec/conf.rng" Feb 23 04:17:09 oteiza ods-enforcerd[28101]: Communication Interval: 3600 Feb 23 04:17:09 oteiza ods-enforcerd[28101]: Using command: /var/lib/opendnssec/sendmail.sh to submit DS records Feb 23 04:17:09 oteiza ods-enforcerd[28101]: SQLite database set to: /var/lib/opendnssec/db/kasp.db Feb 23 04:17:09 oteiza ods-enforcerd[28101]: Log User set to: local0 Feb 23 04:17:09 oteiza ods-enforcerd[28101]: Switched log facility to: local0 Feb 23 04:17:09 oteiza ods-enforcerd[28101]: Connecting to Database... Feb 23 04:17:09 oteiza ods-enforcerd[28101]: Policy default found. Feb 23 04:17:09 oteiza ods-enforcerd[28101]: Key sharing is Off. Feb 23 04:17:09 oteiza ods-enforcerd[28101]: 18 zone(s) found on policy "default" Feb 23 04:17:09 oteiza ods-enforcerd[28101]: No new KSKs need to be created. Feb 23 04:17:09 oteiza ods-enforcerd[28101]: No new ZSKs need to be created. Feb 23 04:17:09 oteiza ods-enforcerd[28101]: Policy ecc found. Feb 23 04:17:09 oteiza ods-enforcerd[28101]: Key sharing is Off. Feb 23 04:17:09 oteiza ods-enforcerd[28101]: No zones on policy ecc, skipping... Feb 23 04:17:09 oteiza ods-enforcerd[28101]: zonelist filename set to /etc/opendnssec/zonelist.xml. Feb 23 04:17:09 oteiza ods-enforcerd[28101]: Zone siccegge.de found. Feb 23 04:17:09 oteiza ods-enforcerd[28101]: Policy for siccegge.de set to default. Feb 23 04:17:09 oteiza ods-enforcerd[28101]: Policy default found in DB. Feb 23 04:17:09 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/siccegge.de.xml. Feb 23 04:17:09 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/siccegge.de.xml Feb 23 04:17:09 oteiza ods-enforcerd[28101]: Zone faui2k9.de found. Feb 23 04:17:09 oteiza ods-enforcerd[28101]: Policy for faui2k9.de set to default. Feb 23 04:17:09 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/faui2k9.de.xml. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/faui2k9.de.xml Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Zone christoph-egger.org found. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Policy for christoph-egger.org set to default. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/christoph-egger.org.xml. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/christoph-egger.org.xml Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Zone egger.im found. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Policy for egger.im set to default. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/egger.im.xml. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/egger.im.xml Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Zone xn--serisli-d1a.ch found. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Policy for xn--serisli-d1a.ch set to default. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/xn--serisli-d1a.ch.xml. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'xn--serisli-d1a.ch' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 04:17:10 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/xn--serisli-d1a.ch.xml Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Zone frida.xyz found. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Policy for frida.xyz set to default. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/frida.xyz.xml. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'frida.xyz' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 04:17:10 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/frida.xyz.xml Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Zone widerli.ch found. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Policy for widerli.ch set to default. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/widerli.ch.xml. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'widerli.ch' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 04:17:10 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/widerli.ch.xml Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Zone kbsd.xyz found. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Policy for kbsd.xyz set to default. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/kbsd.xyz.xml. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'kbsd.xyz' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 04:17:10 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/kbsd.xyz.xml Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Zone coders-nemesis.eu found. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Policy for coders-nemesis.eu set to default. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/coders-nemesis.eu.xml. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'coders-nemesis.eu' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 04:17:10 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/coders-nemesis.eu.xml Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Zone jbn-bobingen.de found. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Policy for jbn-bobingen.de set to default. Feb 23 04:17:10 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/jbn-bobingen.de.xml. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'jbn-bobingen.de' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 04:17:11 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/jbn-bobingen.de.xml Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Zone fau.fail found. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Policy for fau.fail set to default. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/fau.fail.xml. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'fau.fail' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 04:17:11 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/fau.fail.xml Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Zone siccegge.dn found. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Policy for siccegge.dn set to default. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/siccegge.dn.xml. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'siccegge.dn' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 04:17:11 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/siccegge.dn.xml Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Zone 51.1.10.in-addr.arpa found. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Policy for 51.1.10.in-addr.arpa set to default. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/51.1.10.in-addr.arpa.xml. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone '51.1.10.in-addr.arpa' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 04:17:11 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/51.1.10.in-addr.arpa.xml Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Zone faust.ninja found. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Policy for faust.ninja set to default. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/faust.ninja.xml. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'faust.ninja' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 04:17:11 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/faust.ninja.xml Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Zone fahrplan.top found. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Policy for fahrplan.top set to default. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/fahrplan.top.xml. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'fahrplan.top' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 04:17:11 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/fahrplan.top.xml Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Zone 32c3-wiki.top found. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Policy for 32c3-wiki.top set to default. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/32c3-wiki.top.xml. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/32c3-wiki.top.xml Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Zone rfc.dn found. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Policy for rfc.dn set to default. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/rfc.dn.xml. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/rfc.dn.xml Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Zone 23.12.172.in-addr.arpa found. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Policy for 23.12.172.in-addr.arpa set to default. Feb 23 04:17:11 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/23.12.172.in-addr.arpa.xml. Feb 23 04:17:12 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/23.12.172.in-addr.arpa.xml Feb 23 04:17:12 oteiza ods-enforcerd[28101]: Disconnecting from Database... Feb 23 04:17:12 oteiza ods-enforcerd[28101]: Sleeping for 3600 seconds. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: HSM connection open. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Reading config "/etc/opendnssec/conf.xml" Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Reading config schema "/usr/share/opendnssec/conf.rng" Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Communication Interval: 3600 Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Using command: /var/lib/opendnssec/sendmail.sh to submit DS records Feb 23 05:17:12 oteiza ods-enforcerd[28101]: SQLite database set to: /var/lib/opendnssec/db/kasp.db Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Log User set to: local0 Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Switched log facility to: local0 Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Connecting to Database... Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Policy default found. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Key sharing is Off. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: 18 zone(s) found on policy "default" Feb 23 05:17:12 oteiza ods-enforcerd[28101]: No new KSKs need to be created. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: No new ZSKs need to be created. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Policy ecc found. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Key sharing is Off. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: No zones on policy ecc, skipping... Feb 23 05:17:12 oteiza ods-enforcerd[28101]: zonelist filename set to /etc/opendnssec/zonelist.xml. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Zone siccegge.de found. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Policy for siccegge.de set to default. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Policy default found in DB. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/siccegge.de.xml. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/siccegge.de.xml Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Zone faui2k9.de found. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Policy for faui2k9.de set to default. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/faui2k9.de.xml. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/faui2k9.de.xml Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Zone christoph-egger.org found. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Policy for christoph-egger.org set to default. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/christoph-egger.org.xml. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/christoph-egger.org.xml Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Zone egger.im found. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Policy for egger.im set to default. Feb 23 05:17:12 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/egger.im.xml. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/egger.im.xml Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Zone xn--serisli-d1a.ch found. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Policy for xn--serisli-d1a.ch set to default. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/xn--serisli-d1a.ch.xml. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'xn--serisli-d1a.ch' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 05:17:13 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/xn--serisli-d1a.ch.xml Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Zone frida.xyz found. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Policy for frida.xyz set to default. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/frida.xyz.xml. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'frida.xyz' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 05:17:13 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/frida.xyz.xml Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Zone widerli.ch found. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Policy for widerli.ch set to default. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/widerli.ch.xml. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'widerli.ch' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 05:17:13 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/widerli.ch.xml Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Zone kbsd.xyz found. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Policy for kbsd.xyz set to default. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/kbsd.xyz.xml. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'kbsd.xyz' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 05:17:13 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/kbsd.xyz.xml Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Zone coders-nemesis.eu found. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Policy for coders-nemesis.eu set to default. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/coders-nemesis.eu.xml. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'coders-nemesis.eu' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 05:17:13 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/coders-nemesis.eu.xml Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Zone jbn-bobingen.de found. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Policy for jbn-bobingen.de set to default. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/jbn-bobingen.de.xml. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'jbn-bobingen.de' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 05:17:13 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/jbn-bobingen.de.xml Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Zone fau.fail found. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Policy for fau.fail set to default. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/fau.fail.xml. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'fau.fail' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 05:17:13 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/fau.fail.xml Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Zone siccegge.dn found. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Policy for siccegge.dn set to default. Feb 23 05:17:13 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/siccegge.dn.xml. Feb 23 05:17:14 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'siccegge.dn' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 05:17:14 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/siccegge.dn.xml Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Zone 51.1.10.in-addr.arpa found. Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Policy for 51.1.10.in-addr.arpa set to default. Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/51.1.10.in-addr.arpa.xml. Feb 23 05:17:14 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone '51.1.10.in-addr.arpa' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 05:17:14 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/51.1.10.in-addr.arpa.xml Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Zone faust.ninja found. Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Policy for faust.ninja set to default. Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/faust.ninja.xml. Feb 23 05:17:14 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'faust.ninja' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 05:17:14 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/faust.ninja.xml Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Zone fahrplan.top found. Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Policy for fahrplan.top set to default. Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/fahrplan.top.xml. Feb 23 05:17:14 oteiza ods-enforcerd[28101]: WARNING: ZSK rollover for zone 'fahrplan.top' not completed as there are no keys in the 'ready' state; ods-enforcerd will try again when it runs next Feb 23 05:17:14 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/fahrplan.top.xml Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Zone 32c3-wiki.top found. Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Policy for 32c3-wiki.top set to default. Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/32c3-wiki.top.xml. Feb 23 05:17:14 oteiza ods-enforcerd[28101]: ZSK key allocation for zone 32c3-wiki.top: 1 key(s) allocated Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Called signer engine: /usr/sbin/ods-signer update 32c3-wiki.top Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Zone rfc.dn found. Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Policy for rfc.dn set to default. Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/rfc.dn.xml. Feb 23 05:17:14 oteiza ods-signerd[28152]: [signconf] zone 32c3-wiki.top signconf: RESIGN[PT36000S] REFRESH[PT604800S] VALIDITY[PT1296000S] DENIAL[PT1296000S] JITTER[PT43200S] OFFSET[PT3600S] NSEC[50] DNSKEYTTL[PT86400S] SOATTL[PT3600S] MINIMUM[PT3600S] SERIAL[unixtime] Feb 23 05:17:14 oteiza ods-enforcerd[28101]: ERROR: error executing SQL - database is locked Feb 23 05:17:14 oteiza ods-enforcerd[28101]: No change to: /var/lib/opendnssec/signconf/rfc.dn.xml Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Zone 23.12.172.in-addr.arpa found. Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Policy for 23.12.172.in-addr.arpa set to default. Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Config will be output to /var/lib/opendnssec/signconf/23.12.172.in-addr.arpa.xml. Feb 23 05:17:14 oteiza ods-enforcerd[28101]: ERROR: error executing SQL - cannot start a transaction within a transaction Feb 23 05:17:14 oteiza ods-enforcerd[28101]: ERROR: database operation failed - cannot start a transaction within a transaction Feb 23 05:17:14 oteiza ods-enforcerd[28101]: KsmRequestKeys returned: 71691 Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Signconf not written for 23.12.172.in-addr.arpa Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Disconnecting from Database... Feb 23 05:17:14 oteiza ods-enforcerd[28101]: Sleeping for 3600 seconds. Feb 23 06:17:15 oteiza ods-signerd[28152]: [STATS] 32c3-wiki.top 1456204635 RR[count=1 time=0(sec)] NSEC3[count=0 time=0(sec)] RRSIG[new=2 reused=9 time=0(sec) avg=0(sig/sec)] TOTAL[time=0(sec)] Feb 23 06:17:16 oteiza ods-signerd[28152]: [STATS] siccegge.de 1456204635 RR[count=0 time=0(sec)] NSEC3[count=0 time=0(sec)] RRSIG[new=3 reused=207 time=1(sec) avg=3(sig/sec)] TOTAL[time=1(sec)] Feb 23 06:17:17 oteiza ods-signerd[28152]: [STATS] siccegge.dn 1456204637 RR[count=0 time=0(sec)] NSEC3[count=0 time=0(sec)] RRSIG[new=3 reused=51 time=0(sec) avg=0(sig/sec)] TOTAL[time=0(sec)] Feb 23 06:17:18 oteiza ods-signerd[28152]: [STATS] fahrplan.top 1456204637 RR[count=0 time=0(sec)] NSEC3[count=0 time=0(sec)] RRSIG[new=3 reused=8 time=0(sec) avg=0(sig/sec)] TOTAL[time=1(sec)] Feb 23 06:17:18 oteiza ods-signerd[28152]: [STATS] faui2k9.de 1456204638 RR[count=0 time=0(sec)] NSEC3[count=0 time=0(sec)] RRSIG[new=7 reused=81 time=0(sec) avg=0(sig/sec)] TOTAL[time=0(sec)] Feb 23 06:17:19 oteiza ods-signerd[28152]: [STATS] fau.fail 1456204638 RR[count=0 time=0(sec)] NSEC3[count=0 time=0(sec)] RRSIG[new=2 reused=35 time=1(sec) avg=2(sig/sec)] TOTAL[time=1(sec)] Feb 23 06:17:20 oteiza ods-signerd[28152]: [STATS] christoph-egger.org 1456204639 RR[count=0 time=0(sec)] NSEC3[count=0 time=0(sec)] RRSIG[new=4 reused=48 time=0(sec) avg=0(sig/sec)] TOTAL[time=1(sec)]