On Mar 10, 2020, at 18:10, Paul Hoffman <paul.hoff...@icann.org> wrote:

> If we can determine when something in the realm of "almost all" DNSEC signing 
> with algorithms that use SHA-1 is done, then it is reasonable for the WG to 
> propose that software that validates DNSSEC can stop doing so.

Which is quite different from the what this draft is trying to do now by 
setting an arbitrary deadline. That deadline _can_ be damaging.

Paul W

_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to