> > The last point is do we want the whole thing or to make the DNSSEC > > part optional (as in BIND 9 but IMHO justification is historic only)? > > IMHO it should *not* be optional. => I shared this answer until I remembered BIND 10 is not DNS only. So the question is real, in particular for light-weight DHCP. Francis Dupont <fdupont at isc.org>