At 13:13 -0400 9/8/09, Paul Wouters wrote:

At least for TLD's, we expect this to be fixed in December with a signed root.

The root may be signed by then. But I have not seen plans for an interface for the TLDs to use to submit key material.

I am not sure what appliance or software setup '.pr' uses, but it should have
never allowed to finish the key rollover with the bad key in the ISC DLV.

Avoiding addressing just the symptoms, I will say that the most annoying part in documenting SEP supercession is that we have to "wave our hands" at that point and say "when we notice that the $parent has changed the DS record we proceed" to the next step. Besides this hand waving, it's impossible to script this into a test plan.
--
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
Edward Lewis
NeuStar                    You can leave a voice message at +1-571-434-5468

As with IPv6, the problem with the deployment of frictionless surfaces is
that they're not getting traction.
_______________________________________________
DNSOP mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to