[dns-operations] .de DNSSEC issue root cause

Randy Bush randy at psg.com
Wed Jun 17 03:36:44 UTC 2026


> A real HSM to HSM transport of keys involve some kind of system where
> the key material is encrypted in a form where you do not have the
> decryption key but the other HSM does have the decryption key.

russ designed one for backup/restore in the cryptech hsm

i suspect hsm vendors like the lock-in

randy


More information about the dns-operations mailing list