Weighing in on this, I think this is an important piece of work. I’m particularly interested in what else is necessary to introduce the multiple dns operators to each, to authorize their cooperation, and facilitate cross signing of keys whenever a new operator is introduced and whenever one or more of the operators rolls its/their key(s).
This draft is framed in terms of having multiple dns operators serve the same zone on a continuing basis. An important corner case is the transfer of a signed zone from one operator to another without loss of resolution and without loss of validity. If I can be helpful moving this forward, I’ll be glad to help. Steve Crocker Sent from my iPhone > On Jan 3, 2019, at 9:33 PM, Tim Wicinski <[email protected]> wrote: > > Actually draft-huque-dnsop-multi-provider-dnssec was adopted, but the author > (whom I work with and has heard from > me about this regularly) has failed to push up an updated version. I'm > going to force him to turn the authorship > over to one of the other authors who is more responsive to the needs of the > chairs. > > Tim > > >> On Thu, Jan 3, 2019 at 11:26 AM Paul Hoffman <[email protected]> wrote: >> On Jan 3, 2019, at 5:02 AM, Töma Gavrichenkov <[email protected]> wrote: >> > If I were to trace that through the recent DNSOP activity, I could >> > bring up my own draft (draft-gavrichenkov-dnsop-dnssapi), also not >> > adopted and now expired. Maybe there were discussions of the same >> > sort before me that I'm not aware of. >> >> Or he was possibly talking about draft-huque-dnsop-multi-provider-dnssec, >> which expired yesterday, and also has not been adopted. >> >> --Paul Hoffman_______________________________________________ >> DNSOP mailing list >> [email protected] >> https://www.ietf.org/mailman/listinfo/dnsop > _______________________________________________ > DNSOP mailing list > [email protected] > https://www.ietf.org/mailman/listinfo/dnsop
_______________________________________________ DNSOP mailing list [email protected] https://www.ietf.org/mailman/listinfo/dnsop
