[dns-operations] suggested DNSKEY type

Alan Clegg alan at clegg.com
Tue Mar 27 13:43:44 UTC 2018


On 3/27/18 9:28 AM, A. Schulze wrote:

> I would prefer ECDSAP256SHA256 because smaller response size.
> But how many user will get lost because their resolver don't support ECDSAP256SHA256?
> What's with MTAs no longer deliver email messages to my MX because DANE fail?

What is the % of production DANE deployment, and does it actually fail
closed?

AlanC

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 874 bytes
Desc: OpenPGP digital signature
URL: <https://lists.dns-oarc.net/pipermail/dns-operations/attachments/20180327/86778017/attachment.sig>


More information about the dns-operations mailing list