On 20 Jun 2015, at 20:40, Michael Richardson wrote:
I'm looking for real-life examples of DNSSEC delegations that are more than 3 levels deep. "isoc.org" is for instance, .->org, org->isoc, isoc.org->RRset.
So, you're counting secure delegations, not hand-off between different keys.
ox.ac.uk would be a good example, as ac.uk is signed, and not run by uk,but ox.ac.uk is not signed.
As usual, you should have been looking at the other university. http://dnsviz.net/d/dns0.cl.cam.ac.uk/dnssec/ Joe
