Not quite "real world" as I use it for various dnssec tests (incl cds), but
fwiw:
www.kona.cds.zx.com

-Rick


-----Original Message-----
From: [email protected]
[mailto:[email protected]] On Behalf Of
Michael Richardson
Sent: Saturday, June 20, 2015 9:40 PM
To: DNSSEC Deployment List
Subject: [Dnssec-deployment] examples of deeper DNSSEC delegations


I'm looking for real-life examples of DNSSEC delegations that are more than
3
levels deep.  "isoc.org" is for instance, .->org, org->isoc,
isoc.org->RRset.
Yes, I can fabricate some, but I want to be able to point to real world
situations where this is occuring.
[cra.gc.ca *ought* to be a good example, and they ought to be using DANE
too,
but my government is too lame for DNSSEC]

ox.ac.uk would be a good example, as ac.uk is signed, and not run by uk,
but ox.ac.uk is not signed.
nominet.org.uk -- doesn't work as org.uk is not a cut point.
gov.uk would work, are there signed entries under that?
co.uk won't work, as uk runs that, AFAIK.

--
]               Never tell me the odds!                 | ipv6 mesh networks
[
]   Michael Richardson, Sandelman Software Works        | network architect
[
]     [email protected]  http://www.sandelman.ca/        |   ruby on rails
[


Attachment: smime.p7s
Description: S/MIME cryptographic signature

Reply via email to