In article <249a56b6-7bf6-d1e3-2639-0f2d8043a...@cs.tcd.ie> you write:
>> point back to that key, but not enough just to publish the secondaries'
>> names directly. I don't get it.
>
>That could work, but'd mean the primary having to store
>all the records and an extra lookup if even if you had th
Answering two for the price of one...
On 27/02/2019 17:26, John R. Levine wrote:>> new signatures), I myself
only copped on that this could
>> be of some use where the primary has DNSSEC but where the
>> secondary doesn't, which is maybe interesting.
>
> In that case, the primary can just publish