[dns-operations] .TH signed

Chris Thompson cet1 at cam.ac.uk
Wed Apr 8 17:52:28 UTC 2009

On Apr 7 2009, Ondrej Filip wrote:

>I see there is a new TLD signed. Does anybody know any further 
>details? Any plans?

There's something rotten in the ITAR about TH. 

https://itar.iana.org/anchors/anchors.xml (serial 14) has it with 
algorithm="3" digesttype="1" and https://itar.iana.org/anchors/ agrees,
calling it "DSA/SHA-1". But this is rubbish: they are using algorithm 5
(RSA/SHA-1) like everyone else (GOV excepted). This is correctly described
in (DLV,th.dlv.isc.org) and (DS,th)@ns.iana.org.

Is any significant part of the DNSSEC world actually using DSA?

Chris Thompson               University of Cambridge Computing Service,
Email: cet1 at ucs.cam.ac.uk    New Museums Site, Cambridge CB2 3QH,
Phone: +44 1223 334715       United Kingdom.

More information about the dns-operations mailing list