AW: AW: Deprecating auto-dnssec and inline-signing in 9.18+
dot at dotat.at
Tue Aug 10 17:40:04 UTC 2021
Klaus Darilion via bind-users <bind-users at lists.isc.org> wrote:
> By reading this KB I do not know how the user will be informed which DS
> (or DNSKEY) must be submitted to the parent zone. I know you to convert
> a DNSKEY to DS, but IMO the KB is very good but missest hat point.
I would expect the zone's apex CDS and CDNSKEY records to change, but
neither are mentioned in the KB article.
f.anthony.n.finch <dot at dotat.at> https://dotat.at/
a fair voting system for all elections
More information about the bind-users