[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]


To: DNS Operations <dnsop@cafax.se>
From: Måns Nilsson <mansaxel@sunet.se>
Date: Thu, 10 Oct 2002 15:11:03 +0200
Content-Disposition: inline
In-Reply-To: <E17zXRV-000BbT-00@roam.psg.com>
Sender: owner-dnsop@cafax.se
Subject: Re: Interim signing of the root zone.

--On Thursday, October 10, 2002 16:09:09 +0900 Randy Bush <randy@psg.com>
wrote:

> with dnssec, anycast authoritative servers are way cool, clearly safe,
> and quite deployable.
> 
> without dnssec, it seems grandstanding to no prudent useful end.

This is an excellent argument for DNSSEC, in my eyes at least. 

Seems there is a to-do list forming here. 

* Get more eyeballs on the BIND 9<some version> failure scenarios with
  signed root. Can those who reported these speak up? 

* Fix those issues and get a stable 9.3 out.

* Discuss this in RSSAC. Thoroughly. 

* Polish the draft and advance it. 

* Perform the test, including preparations. 

* Stop the test and think things over. 

Just this moderately clued observers view, while looking for asbestos
underwear... 
-- 
Måns Nilsson            Systems Specialist
+46 70 681 7204         KTHNOC  MN1334-RIPE

We're sysadmins. To us, data is a protocol-overhead.

#----------------------------------------------------------------------
# To unsubscripbe, send a message to <dnsop-request@cafax.se>.

Home | Date list | Subject list