Re: [Dnsmasq-discuss] RFC5011?

2015-07-28 Thread Michael Tremer
Hi, that is good news that you considered implementing this, too. On Mon, 2015-07-27 at 19:31 +0100, Simon Kelley wrote: I've considered it, and in an ideal world would like to implement it. My experience is the _nothing_ to do with DNSSEC is not too difficult and, to be honest, any system

Re: [Dnsmasq-discuss] RFC5011?

2015-07-27 Thread Simon Kelley
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 I've considered it, and in an ideal world would like to implement it. My experience is the _nothing_ to do with DNSSEC is not too difficult and, to be honest, any system deploying the releases of dnsmasq with DNSSEC to-date which can't be updated is

[Dnsmasq-discuss] RFC5011?

2015-07-23 Thread Michael Tremer
Hello Simon, hello list, I was just wondering if someone has ever considered to support RFC5011 in dnsmasq: https://tools.ietf.org/html/rfc5011 This will automatically update the trust anchor in case the KSK of the root zone is replaced which will probably happen this year. The