[dns-operations] Outdated RIPE NCC Trust Anchors in Fedora Linux Repositories

Michael Sinatra michael at rancid.berkeley.edu
Mon Feb 8 08:36:52 UTC 2010


On 02/07/10 17:09, Randy Bush wrote:
>>> Another possible lesson is that you should use DLV and not rely on
>>> static files.
>> DLV does need a key in the first place...
>
> dlv is a well-meant attempt to assert authority with no corresponding
> responsibility.

In theory, this is absolutely correct.  In practice, ISC (for example) 
has tried very hard to accept responsibility for those of us who have 
used their DLV as a production service.

> sign the root.

Yep!

michael



More information about the dns-operations mailing list