Hello,
I have studied your I-D, draft-morris-dnsop-dnssec-key-timing-00
and find it a very useful exposition.
I have (A) one point for discussion and (B) a few nits to polish.
(A)
The draft generally assumes a single active key used for zone
signing (or as a KSK for secure delegation).
IIRC,
Chris Thompson c...@hermes.cam.ac.uk wrote on 17/02/2009 19:50:44:
On Feb 17 2009, stephen.mor...@nominet.org.uk wrote:
John Dickinson and Johan Ihren and I have just submitted
http://www.ietf.org/internet-drafts/draft-morris-dnsop-dnssec-key-
timing-00.txt
The draft gives a rigorous