For DNSSEC
blog.easydns.org
For DNSSEC
1–10 of 81 posts
Re: For DNSSEC
#2Re: For DNSSEC
#3Personally I think a new DNSSEC2 based on for example online signing might be a good idea.
Re: For DNSSEC
#4Re: For DNSSEC
#5Re: For DNSSEC
#6Earlier quoted context omitted.
DNSSEC has several problems some of which is in the design, as tptacek likes to mention.
But what do you mean by "online signing" ?
Re: For DNSSEC
#7Personally I think a new DNSSEC2 based on for example online signing might be a good idea.
Re: For DNSSEC
#8Personally I think a new DNSSEC2 based on for example online signing might be a good idea.
What do you mean?
Re: For DNSSEC
#9Earlier quoted context omitted.
But what do you mean by "online signing" ?
One of the problems is that it exposed DNS zone information, and one of the reason it did that was it was designed to require signing only once and after that the private key didn't have to be used again until the zone info changes.