Thank you Mark
Regards,
David
-Original Message-
From: Mark Andrews [mailto:ma...@isc.org]
Sent: February-14-13 5:39 PM
To: David Sherman
Cc: bind-us...@isc.org
Subject: Re: NSEC3/NSEC transition
In message , David Sherman writes:
> Thank you, Mark
>
> Is it safe to keep
Thank you, Mark
Is it safe to keep -u option for dnssec-signzone in all cases, regardless of
current actual NSEC/NSEC3 chains.
Thanks,
David
-Original Message-
From: Mark Andrews [mailto:ma...@isc.org]
Sent: February-14-13 3:23 PM
To: David Sherman
Cc: bind-us...@isc.org
Subject: Re
Hi,
If dynamic signing is used with BIND 9.8, what is the recommended procedure to
switch from NSEC3-signed zone to NSEC-signed without changing existing DNSKEYs
(currently RSA/SHA-512 algorithms are used for both ZSK and KSK)?
Any specific options for dnssec-signzone?
Thanks,
David
___
3 matches
Mail list logo