DNSSEC made simple, is this possible?

Jan-Piet Mens jpmens.dns at gmail.com
Wed Jan 11 18:26:25 UTC 2012


> Next great thing would be for ISC to support the Soft-HSM that
> OpenDNSSEC uses. I believe that this would make the step of moving to a
> real hardware HSM a lot easier (if necessary).

BIND has supported the PKCS#11 interface (./configure --with-pkcs11)
since 9.6 IIRC, so it ought to be possible to integrate.

        -JP



More information about the bind-users mailing list