Thanks to all that replied.  I think the solution I want to pursue is to 
integrate AD 2012 DNS with BIND.  Talk about bleeding edge huh??




________________________________
 From: Tony Finch <d...@dotat.at>
To: Marc Lampo <marc.la...@eurid.eu> 
Cc: John Williams <john.1...@yahoo.com>; bind-users@lists.isc.org 
Sent: Monday, July 2, 2012 11:10 AM
Subject: RE: BIND, DNSSEC & AD
 
Marc Lampo <marc.la...@eurid.eu> wrote:
>
> you are aware that Windows DNS service understands DNSSEC algorithm 5
> (RSA/SHA-1 – NSEC) at most ?

Carsten Strotmann's post says Windows Server 2012 fixes this limitation
http://strotmann.de/roller/dnsworkshop/entry/dnssec_validation_in_microsoft_dns

Tony.
-- 
f.anthony.n.finch  <d...@dotat.at>  http://dotat.at/
Viking, North Utsire, South Utsire: Southwesterly, backing southeasterly 4 or
5, occasionally 6 at first in Viking. Moderate. Rain or showers. Moderate or
good.
_______________________________________________
Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe 
from this list

bind-users mailing list
bind-users@lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users

Reply via email to