HP-UX Reference (11i v2 07/12) - 4 File Formats (vol 8)

r
rndc.conf(4) rndc.conf(4)
The secret can be generated using dnssec-keygen
as follows:
$ dnssec-keygen -a hmac-md5 -b 128 -n user rndc
The base-64 string will appear in two files, Krndc.+157.+{random}.key and Krndc.+157.+{random}.private.
After extracting the key to be placed in the
rndc.conf and named.conf key statements, the .key
and .private files can be removed.
NAME SERVER CONFIGURATION
The name server must be configured to accept
rndc connections and to recognize the key specified in the
rndc.conf file, using the controls statement in
named.conf .
LIMITATIONS
There is currently no way to specify the port on which
rndc must run.
AUTHOR
rndc.conf was developed by ISC (Internet Software Consortium).
SEE ALSO
dnssec-keygen(1), rndc(1), named(1M).
310 Hewlett-Packard Company 2 HP-UX 11i Version 2: December 2007 Update