[dns-operations] How widely implemented are different DNSSEC algorithms?

Moritz Muller moritz.muller at sidn.nl
Mon Sep 14 06:57:25 UTC 2020


We publish some numbers on .nl on our stats website:

https://stats.sidnlabs.nl/en/dnssec.html#algorithms%20used

-
Moritz

> On 14 Sep 2020, at 06:59, Arsen STASIC <arsen.stasic at univie.ac.at> wrote:
> 
> * John Levine <johnl at taugh.com> [2020-09-11 14:29 (-0400)]:
>> Are there any published numbers estimating how well the various DNSSEC
>> algorithms are supported in DNS caches and client software?
>> 
>> Or to put it another way, were I to switch from signing with
>> algorithm 8 to 13, how much would I regret it?
> 
> Geoff Huston from APNIC has some nice graphs on ECDSA support (also in comparison to RSA support) in recursive nameservers:
> 
> https://stats.labs.apnic.net/ecdsa/AU
> https://stats.labs.apnic.net/ecdsa/US
> 
> cheers,
> arsen
> _______________________________________________
> dns-operations mailing list
> dns-operations at lists.dns-oarc.net
> https://lists.dns-oarc.net/mailman/listinfo/dns-operations

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 488 bytes
Desc: Message signed with OpenPGP
URL: <https://lists.dns-oarc.net/pipermail/dns-operations/attachments/20200914/b2f4b77b/attachment.sig>


More information about the dns-operations mailing list