On Wed, Apr 16, 2014 at 3:34 AM, Jaap Akkerhuis <j...@nlnetlabs.nl> wrote:
>
>     > When a DNS operator first signs their zone, they need to communicate 
> their
>     > keying material to their parent through some out-of-band method to 
> complete
>
>
>
> And changing opening sentence to:
>
>         The first time a DNS operator signs the zone, they need to
>         communicate the keying ..."
>
> Make it even more clear.

Thank you.
I think I made it even clearer:
The first time a DNS operator signs a zone, they need to communicate
the keying material to their parent through some out-of-band method to
complete the chain of trust. Depending on the desires of the parent,
the child might send their DNSKEY record, a DS record, or both.

Good?
W


>
>         jaap (nitpicking mode)
>
> _______________________________________________
> DNSOP mailing list
> DNSOP@ietf.org
> https://www.ietf.org/mailman/listinfo/dnsop

_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to