[dnssec-deployment] NSEC3 progress

Ben Laurie ben at algroup.co.uk
Wed May 25 08:22:57 EDT 2005


Olaf M. Kolkman wrote:
> 
> On May 25, 2005, at 12:37 AM, Ben Laurie wrote:
> 
>>
>> It seems to me quite inappropriate to characterise the importance or
>>
>> relevance of an approach by the amount of list bandwidth it uses up. We
>>
>> believe in DNSSEC and NSEC3, we want it to happen, we don't want to
>>
>> waste your time on considering half-baked versions of it.
>>
>>
>>
> 
> For what its worth.
> 
> NSEC3 is on the groups agenda and I feel that after this update has been
> published we should make the jump from vapourware to software and
> organise a workshop to understand possible issues. In the past those
> workshops have shown to be more than worthwhile in getting good specs.
> Question: anybody doing an implementation, server/client side?

I have NSEC2 patches for BIND 9. It shouldn't be hard to update to NSEC3.

Cheers,

Ben.



More information about the Dnssec-deployment mailing list