On Thu, Feb 08, 2018 at 10:06:02AM -0800, Paul Vixie wrote:
> > At the very least, a "trusted-keys for the root KSK considered
> > harmful" syslog message would be a hopefully easy and
> > non-controversial first step in the right direction.
>
> i think that's entirely reasonable, and based on BIND9's syslogging when its
> hints file is seen to be out of date (doesn't match priming), i think
> there's sufficient precedent. but i do think we ought to be realistic as to
> whether the 99%'ers will ever read their syslog files.
I would've sworn this was already done. It looks like it was discussed
on ticket #43670 and then the ticket was silently closed. Re-opening.
Mukund
_______________________________________________
DNSOP mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dnsop