On Thu, 20 Mar 2003, George Michaelson wrote:
> Unless I mis-read the Security directorate black hat view, its not permissable
> to use DNSSEC keys to secure any other aspect of the Internet, apart from the
> DNS itself.
the KEY RR can only be used for DNSSEC itself. other RRs, like IPSECKEY,
can contain keys.
> So we'd be talking about an RR identifying a key, to be found in some other
> context specific key distribution framework. Right?
the IPSECKEY RR contains the actual key and what security gateway to use.
jakob
#----------------------------------------------------------------------
# To unsubscribe, send a message to <[EMAIL PROTECTED]>.