In message <>, Alexander Gall writes:
> All of those are NSEC3-agnostic.  They should not do any DNSSEC
> processing for the ch zone, because they don't support algorithm #7.

Yes and no.  Just because you are using a algorithm that is unsupported
doesn't mean that you won't get queries looking for the break point
between supported and unsupported algorithms.  DS queries are used
to find that break point.

Mark Andrews, ISC
1 Seymour St., Dundas Valley, NSW 2117, Australia
PHONE: +61 2 9871 4742                 INTERNET:
bind-users mailing list

Reply via email to