Use the Auto Generate Keys function when automatic key generation is disabled and you want to manually generate new keys for a signed DNS zone or reverse zone.
To be regenerated, keys must be within their Overlap Interval as defined in the key parameters in the DNSSEC signing policy. For information on setting the Overlap Interval, refer to Creating a DNSSEC signing policy.
After using the Auto Generate Keys function, you must deploy the configuration to re-sign the zone on your servers.
To generate new keys: