Re: [Dnssec-deployment] cdns truncation bugs fixed, was Re: The nameservers for .SOY and .FOO are broken.

2014-10-11 Thread tlhackque
On 10-Oct-14 22:38, Mark Andrews wrote: In message alpine.lsu.2.00.1410101712300.4...@hermes-1.csi.cam.ac.uk, Tony Finch writes: You might remember this discussion of name server bugs from a couple of months ago. Tony Finch d...@dotat.at wrote: The fourth and fifth bugs are in the

Re: [Dnssec-deployment] Haveged

2015-03-09 Thread tlhackque
On 09-Mar-15 07:29, Tony Finch wrote: Robert Martin-Legene rob...@pch.net wrote: Does anyone have experiences using haveged for PRNG? When generating DNSSEC keys on a virtual server is takes a looong time to get randomness. My view is that haveged might be snake-oil, but it is a useful way of

Re: [Dnssec-deployment] Dnssec-deployment Digest, Vol 66, Issue 1

2015-07-27 Thread tlhackque
On 27-Jul-15 10:04, dnssec-deployment-requ...@dnssec-deployment.org wrote: 3. Implementing DNSSEC validation at Internet Service Providers (ISPs) Internet Service Providers (ISPs) play a critical role by enabling DNSSEC validation for the caching DNS resolvers used by their customers.