Hello, Le 11 mai 2015 à 22:37, Johannes Löthberg a écrit :
> On 11/05, Denis Fondras wrote: >>> >>> 2- DNSSEC is still painful to setup, no one does it unfortunately :-/ >>> >> >> More precisely, it is easy to setup and painful to manage :D >> > > Well, BIND’s automatic signing gives you nothing to manage really. The same with opendnssec, but you still in both case have to publish the KSK to your registrar each 0.5/1/2/5/10/whatever years. Except if your registrar provides an API that permits you to upload your new KSKs (dangerous though ! ;) ). Best regards. Emmanuel Thierry -- You received this mail because you are subscribed to misc@opensmtpd.org To unsubscribe, send a mail to: misc+unsubscr...@opensmtpd.org