Set the revocation field when revoking a key

This commit is contained in:
Rodolphe Bréard 2023-04-11 10:25:16 +02:00 committed by GitHub
parent 97fae54252
commit 2da4955da0
No known key found for this signature in database
GPG key ID: 4AEE18F83AFDEB23

View file

@ -56,8 +56,8 @@ A man page will be available by the time this filter is ready to use.
Keys are stored in an SQLite format 3 database. You may access it using the `sqlite3` CLI tool or any other compatible tool.
The simplest way to revoke a key is to set its `not_after` field at the current timestamp. A new key will automatically be generated.
The simplest way to revoke a key is to set its `not_after` field at the current timestamp. A new key will automatically be generated. You may also set the `revocation` field to a different timestamp in order to publish the key when desired.
```
UPDATE key_db SET not_after = unixepoch() WHERE selector = 'dkim-755512d8f51b4da6936d565a1ddbaf17';
UPDATE key_db SET not_after = unixepoch(), revocation = unixepoch('now', '+20 days') WHERE selector = 'dkim-755512d8f51b4da6936d565a1ddbaf17';
```