Remote key generation

From: David L Neil <opendkim_at_DancesWithMice.info>
Date: Fri, 15 Mar 2019 08:30:49 +1300

Is it possible, and are there any security objections to, generating
keys and opendkim keyfiles (etc) on one machine, for deployment to another?


What I would like to do is:
1 use my personal machine to keep a list of opendkim deployments on
multiple physical servers
2 periodically generate new keys
3 build the necessary files locally (BASH/Python script)
4 deploy at appropriate times-of-day

Assume all hardware is 64-bit, the OpSys may differ between CentOS7 and
Fedora29, time zones differ hugely. The 'generator' machine does not run
opendkim, the email servers do. (um, well, yes...)

Better still: has it already been done/is there some web-based service
I've not yet found?

-- 
Regards =dn
Received on Thu Mar 14 2019 - 19:31:24 PST

This archive was generated by hypermail 2.3.0 : Fri Mar 15 2019 - 05:00:01 PST