[dns-operations] DNSSEC for .nz, status update

Sebastian Castro sebastian at nzrs.net.nz
Mon Nov 21 02:25:23 UTC 2011


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Dear Colleagues:

[Apologies in advance if you have seen this message posted to a
different mailing list]


During the past few days, two major milestones have been accomplished in
the journey to enable DNSSEC for .nz

On Friday November 18th, the cryptographic keys required to sign the .nz
zones with DNSSEC were created. We have posted part of the materials
used during this procedure in our website:
http://nzrs.net.nz/content/first-key-generation

At 10:00am on Monday November 21st NZDT, a signed version of the .nz
zone went live. The DNSKEY records have been obscured to prevent
validation as a first step on the deployment phase. More details
available at
http://nzrs.net.nz/content/nz-signed-zone-published-obscured-keys

We've been monitoring the service closely during the past few hours and
no major changes have been observed. We are ready to see an spike on
DNSKEY queries starting from now ;)

Kind Regards,
- -- 
Sebastian Castro
DNS Specialist
.nz Registry Services (New Zealand Domain Name Registry Limited)
desk: +64 4 495 2337
mobile: +64 21 400535


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iEYEARECAAYFAk7JtpMACgkQWyqRrHcQWTmotgCfdbz/uKPxGjJLkIoLuMISb5nX
CV8AnjnMJWAupJmaFWvHzaLHIp29riQn
=QS31
-----END PGP SIGNATURE-----



More information about the dns-operations mailing list