[dnssec-deployment] dot MUSEUM implemented DNSSEC

Andrew Sullivan ajs at commandprompt.com
Fri Sep 19 12:14:29 EDT 2008


On Fri, Sep 19, 2008 at 05:41:31PM +0200, Mats.Dufberg at teliasonera.com wrote:

> The DNSsec model assums that the parent zone registry makes reasonable
> checks when the registry of the child zone enters new DS record for the
> child zone, i.e. checks to make sure that it is not an evil gang trying
> to steal the control of the child zone.

Surely this is no different than the current care needed when updating
NS records at the parent side of the zone cut, is it?

A

-- 
Andrew Sullivan
ajs at commandprompt.com
+1 503 667 4564 x104
http://www.commandprompt.com/



More information about the Dnssec-deployment mailing list