[Dnssec-deployment] Expired RRSIGs for .be

Leo Vegoda leo.vegoda at icann.org
Sat Oct 9 13:04:04 EDT 2010


On Oct 9, 2010, at 10:01 AM, Doug Barton wrote:

[…]

> This topic keeps coming up in various locations and the answer is always 
> the same. If it's mission-critical for you to communicate with domains 
> that have broken DNSSEC your SMTP needs to rely on a non-validating 
> resolver.

Or perhaps fall back to a different medium, like telephone.



More information about the Dnssec-deployment mailing list