---
title: "Configuring TSIG Keys"
canonical: "https://docs.infoblox.com/space/BloxOneDDI/186778455/Configuring%20TSIG%20Keys"
format: markdown
---
<span style="color: #000000">Zone transfers between the local appliance and the external primary server use a TSIG (transaction signature) for security. Infoblox TSIG keys use Hash-based Message Authentication (HMAC). These are keyed one-way hashes for message authentication. For more information, see </span><span style="color: #000000">*[HMAC: Keyed-Hashing for Message Authentication](https://tools.ietf.org/html/rfc2104)*</span><span style="color: #000000">.</span>

The following diagram explains the process of using TSIG at a high level:

![image-20260807-075744.png](media://48123da1-0af7-42c0-b8d1-7f950898feaa)

> Macro (excerpt)
> 
> > Macro (drawio)

<span style="color: #000000">To view the list of TSIG keys, complete the following:</span>

- <span style="color: #000000">From the Infoblox Portal, click </span><span style="color: #000000">**System > Administration > TSIG Keys**</span><span style="color: #000000">. If there are multiple keys you must click the particular key to view the details. If there are no keys, you must create it before using it for a zone transfer. For more information about creating a TSIG key, see </span><span style="color: #000000">*[Creating TSIG](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186909350)*</span><span style="color: #000000">.</span>
- <span style="color: #000000">If you are an administrator, you can create, modify, or delete a TSIG key. If you are a user, you can only view the TSIG key. For more information, see </span><span style="color: #000000">*[Role-based Access Control](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186681007)*</span><span style="color: #000000">[.](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186681007)</span>

<span style="color: #000000">An existing TSIG key can be used in the following:</span>

- <span style="color: #000000">TSIG keys can be used while creating a DNS Server Group. For more information, see </span><span style="color: #000000">*[Creating Authoritative DNS Server Groups](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186648997)*</span><span style="color: #000000">.</span>
- <span style="color: #000000">TSIG keys can be used when creating an Access Control List. For more information, see </span><span style="color: #000000">*[Creating Named ACLs](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186779110)*</span><span style="color: #000000">.</span>

<span style="color: #000000">You can also do the following in this tab:</span>

- <span style="color: #000000">Click the menu button, </span>> Macro (inline-media-image)

<span style="color: #000000">, to reorder the columns or to select the columns to be displayed.</span>

- <span style="color: #000000">Click  the menu button, </span>> Macro (inline-media-image)

<span style="color: #000000">, and then </span><span style="color: #000000">**Edit**</span><span style="color: #000000">, or select the check box for the respective record and click the </span><span style="color: #000000">**Edit**</span><span style="color: #000000"> button to modify a TSIG Key.</span>
- <span style="color: #000000">Click the menu button, </span>> Macro (inline-media-image)

<span style="color: #000000">, and then </span><span style="color: #000000">**Delete**</span><span style="color: #000000">, or select the respective anycast address and click the </span><span style="color: #000000">**Delete**</span><span style="color: #000000"> button to delete the TSIG Key.</span>
- <span style="color: #000000">Select a TSIG Key to view information such as Anycast IP address, name, protocol and filters in the right panel. If you do not want to view the details in the right panel, click the information button, </span>> Macro (inline-media-image)

<span style="color: #000000">.</span>
- <span style="color: #000000">Enter the value that you want to search in the </span><span style="color: #000000">**Search**</span><span style="color: #000000"> text box. Universal DDI displays the list of records matching the keyword in the text box.</span>
- <span style="color: #000000">Click the filter button, </span>> Macro (inline-media-image)

<span style="color: #000000">, to filter the objects by </span><span style="color: #000000">**Key Name**</span><span style="color: #000000">, </span><span style="color: #000000">**Algorithm**</span><span style="color: #000000">, and </span><span style="color: #000000">**Tags**</span><span style="color: #000000">. To save a filter after selecting the required parameters, click the save button, </span>> Macro (inline-media-image)

<span style="color: #000000">, specify a name for the filter, and click </span><span style="color: #000000">**Save & Close**</span><span style="color: #000000">. To reload a previously saved filter, click the star button, </span>> Macro (inline-media-image)

<span style="color: #000000">, and select the required filter. </span>

<span style="color: #000000">You can perform the following actions:</span>

- <span style="color: #000000">*[Creating TSIG](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186909350)*</span>
- <span style="color: #000000">*[Modifying TSIG](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186909368)*</span>
- <span style="color: #000000">*[Deleting TSIG](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186811604)*</span>