[dns-operations] .fr has 5 DNSKEYs

Stephane Bortzmeyer bortzmeyer at nic.fr
Tue May 31 13:02:17 UTC 2011


On Tue, May 31, 2011 at 08:47:10AM -0400,
 Edward Lewis <Ed.Lewis at neustar.biz> wrote 
 a message of 35 lines which said:

> You can't "just press a key into service" - that would shock the
> system.

+1

> Remember DNS is client-cache-server and not client-server.  That
> extra component (is what gave rise to DNSSEC in the first place and)
> causes latency in all changes of course.

And existing surveys show that timing problems are indeed quite
common:
http://conferences.npl.co.uk/satin/papers/satin2011-Bortzmeyer.pdf



More information about the dns-operations mailing list