On 1 feb 2011, at 01.40, Phillip Hallam-Baker wrote: > My advice to Cisco would be to use their existing root to sign the published > CSR for the DNS root KSK in the short term at least.
That's why we (the Root DNSSEC Design Team) included a CSR as one output from the key generation ceremony. jakob _______________________________________________ DNSOP mailing list DNSOP@ietf.org https://www.ietf.org/mailman/listinfo/dnsop