<html xmlns:o="urn:schemas-microsoft-com:office:office" xmlns:w="urn:schemas-microsoft-com:office:word" xmlns:m="http://schemas.microsoft.com/office/2004/12/omml" xmlns="http://www.w3.org/TR/REC-html40">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
<meta name="Generator" content="Microsoft Word 15 (filtered medium)">
<style><!--
/* Font Definitions */
@font-face
        {font-family:Wingdings;
        panose-1:5 0 0 0 0 0 0 0 0 0;}
@font-face
        {font-family:"Cambria Math";
        panose-1:2 4 5 3 5 4 6 3 2 4;}
@font-face
        {font-family:Calibri;
        panose-1:2 15 5 2 2 2 4 3 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
        {margin:0in;
        font-size:11.0pt;
        font-family:"Calibri",sans-serif;}
a:link, span.MsoHyperlink
        {mso-style-priority:99;
        color:#0563C1;
        text-decoration:underline;}
span.EmailStyle17
        {mso-style-type:personal-compose;
        font-family:"Calibri",sans-serif;
        color:windowtext;}
.MsoChpDefault
        {mso-style-type:export-only;
        font-family:"Calibri",sans-serif;}
@page WordSection1
        {size:8.5in 11.0in;
        margin:1.0in 1.0in 1.0in 1.0in;}
div.WordSection1
        {page:WordSection1;}
/* List Definitions */
@list l0
        {mso-list-id:596136134;
        mso-list-template-ids:239471320;}
@list l0:level1
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:.5in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Symbol;}
@list l0:level2
        {mso-level-number-format:bullet;
        mso-level-text:o;
        mso-level-tab-stop:1.0in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:"Courier New";
        mso-bidi-font-family:"Times New Roman";}
@list l0:level3
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:1.5in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
@list l0:level4
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:2.0in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
@list l0:level5
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:2.5in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
@list l0:level6
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:3.0in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
@list l0:level7
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:3.5in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
@list l0:level8
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:4.0in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
@list l0:level9
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:4.5in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
@list l1
        {mso-list-id:796071939;
        mso-list-template-ids:-1055910018;}
@list l1:level1
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:.5in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Symbol;}
@list l1:level2
        {mso-level-number-format:bullet;
        mso-level-text:o;
        mso-level-tab-stop:1.0in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:"Courier New";
        mso-bidi-font-family:"Times New Roman";}
@list l1:level3
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:1.5in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
@list l1:level4
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:2.0in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
@list l1:level5
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:2.5in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
@list l1:level6
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:3.0in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
@list l1:level7
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:3.5in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
@list l1:level8
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:4.0in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
@list l1:level9
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:4.5in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
@list l2
        {mso-list-id:1564562700;
        mso-list-template-ids:-398425848;}
@list l2:level1
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:.5in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Symbol;}
@list l2:level2
        {mso-level-number-format:bullet;
        mso-level-text:o;
        mso-level-tab-stop:1.0in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:"Courier New";
        mso-bidi-font-family:"Times New Roman";}
@list l2:level3
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:1.5in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
@list l2:level4
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:2.0in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
@list l2:level5
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:2.5in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
@list l2:level6
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:3.0in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
@list l2:level7
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:3.5in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
@list l2:level8
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:4.0in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
@list l2:level9
        {mso-level-number-format:bullet;
        mso-level-text:;
        mso-level-tab-stop:4.5in;
        mso-level-number-position:left;
        text-indent:-.25in;
        mso-ansi-font-size:10.0pt;
        font-family:Wingdings;}
ol
        {margin-bottom:0in;}
ul
        {margin-bottom:0in;}
--></style>
</head>
<body lang="EN-US" link="#0563C1" vlink="#954F72" style="word-wrap:break-word">
<div class="WordSection1">
<p style="margin:0in"><b><span style="font-size:14.0pt;color:black">Call for Participation -- ICANN DNSSEC and Security Workshop for ICANN77 Policy Forum</span></b><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black"> </span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black">In cooperation with the ICANN Security and Stability Advisory Committee (SSAC), we are planning a DNSSEC and Security Workshop for the ICANN77 Policy Forum being held as a hybrid meeting from
 12-15 June 2023 in the Eastern Time Zone (UTC -4). This workshop date will be determined once ICANN creates a block schedule for us to follow; then we will be able to request a day and time. The DNSSEC and Security Workshop has been a part of ICANN meetings
 for several years and has provided a forum for both experienced and new people to meet, present and discuss current and future DNSSEC deployments.  For reference, the most recent session was held at the ICANN76 Community Forum on Wednesday,  15 March 2023.
 The presentations and transcripts are available at: </span><a href="https://icann76.sched.com/event/1J2JA/dnssec-and-security-workshop-1-of-3"><span style="font-size:14.0pt;color:#1155CC">https://icann76.sched.com/event/1J2JA/dnssec-and-security-workshop-1-of-3</span></a><span style="font-size:14.0pt;color:black">, </span><o:p></o:p></p>
<p style="margin:0in"><a href="https://icann76.sched.com/event/1J2JD/dnssec-and-security-workshop-2-of-3"><span style="font-size:14.0pt;color:#1155CC">https://icann76.sched.com/event/1J2JD/dnssec-and-security-workshop-2-of-3</span></a><span style="font-size:14.0pt;color:black">
</span><span style="font-size:13.5pt;color:black">and </span><o:p></o:p></p>
<p style="margin:0in"><a href="https://icann76.sched.com/event/1J2JE/dnssec-and-security-workshop-3-of-3"><span style="font-size:13.5pt;color:#1155CC">https://icann76.sched.com/event/1J2JE/dnssec-and-security-workshop-3-of-3</span></a><span style="font-size:13.5pt;color:black">.</span><o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black">The DNSSEC Workshop Program Committee is developing a program for the upcoming meeting.  Proposals will be considered for the following topic areas and included if space permits.  In addition,
 we welcome suggestions for additional topics either for inclusion in the ICANN77 workshop, or for consideration for future workshops.</span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black"> </span><o:p></o:p></p>
<p style="margin:0in"><b><span style="font-size:14.0pt;color:black">1.  Global DNSSEC Activities Panel</span></b><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black">For this panel, we are seeking participation from those who have been involved in DNSSEC deployment as well as from those who have not deployed DNSSEC but who have a keen interest in the challenges
 and benefits of deployment, including Root Key Signing Key (KSK) Rollover activities and plans.</span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black"> </span><o:p></o:p></p>
<p style="margin:0in"><b><span style="font-size:14.0pt;color:black">2.  DNSSEC Best Practice</span></b><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black">Now that DNSSEC has become an operational norm for many registries, registrars, and ISPs, what have we learned about how we manage DNSSEC?  </span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:13.5pt;font-family:"Times New Roman",serif;color:black"><br>
<br>
<br>
<br>
<br>
</span><o:p></o:p></p>
<ul style="margin-top:0in;padding-inline-start:48px" type="disc">
<li style="color:black;margin-top:0in;margin-bottom:0in;mso-list:l0 level1 lfo1;vertical-align:baseline">
<span style="font-size:14.0pt">Do you still submit/accept DS records with Digest Type 1?</span><span style="font-size:10.0pt"><o:p></o:p></span></li><li style="color:black;margin-top:0in;margin-bottom:0in;mso-list:l0 level1 lfo1;vertical-align:baseline">
<span style="font-size:14.0pt">What is the best practice around key roll-overs?</span><span style="font-size:10.0pt"><o:p></o:p></span></li><li style="color:black;margin-top:0in;margin-bottom:0in;mso-list:l0 level1 lfo1;vertical-align:baseline">
<span style="font-size:14.0pt">What about Algorithm roll-overs?</span><span style="font-size:10.0pt"><o:p></o:p></span></li><li style="color:black;margin-top:0in;margin-bottom:0in;mso-list:l0 level1 lfo1;vertical-align:baseline">
<span style="font-size:14.0pt">Do you use and support DNSKEY Algorithms 13-16?</span><span style="font-size:10.0pt"><o:p></o:p></span></li><li style="color:black;margin-top:0in;margin-bottom:0in;mso-list:l0 level1 lfo1;vertical-align:baseline">
<span style="font-size:14.0pt">How often do you review your disaster recovery procedures?</span><span style="font-size:10.0pt"><o:p></o:p></span></li><li style="color:black;margin-top:0in;margin-bottom:0in;mso-list:l0 level1 lfo1;vertical-align:baseline">
<span style="font-size:14.0pt">Is there operational familiarity within your customer support teams?</span><span style="font-size:10.0pt"><o:p></o:p></span></li><li style="color:black;margin-top:0in;margin-bottom:0in;mso-list:l0 level1 lfo1;vertical-align:baseline">
<span style="font-size:14.0pt">What operational statistics have been gathered about DNSSEC?</span><span style="font-size:10.0pt"><o:p></o:p></span></li><li style="color:black;margin-top:0in;margin-bottom:0in;mso-list:l0 level1 lfo1;vertical-align:baseline">
<span style="font-size:14.0pt">Are there experiences being documented in the form of best practices, or something similar, for transfer of signed zones?</span><span style="font-size:10.0pt"><o:p></o:p></span></li></ul>
<p style="margin:0in"><span style="font-size:13.5pt;font-family:"Times New Roman",serif;color:black"> </span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black">Activities and issues related to DNSSEC in the DNS Root Zone are also desired.</span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black"> </span><o:p></o:p></p>
<p style="margin:0in"><b><span style="font-size:14.0pt;color:black">3. DNSSEC Deployment Challenges</span></b><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black">The program committee is seeking input from those that are interested in implementation of DNSSEC but have general or particular concerns with DNSSEC.  In particular, we are seeking input from
 individuals that would be willing to participate in a panel that would discuss questions of the following nature:</span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:13.5pt;font-family:"Times New Roman",serif;color:black"><br>
<br>
<br>
<br>
<br>
</span><o:p></o:p></p>
<ul style="margin-top:0in;padding-inline-start:48px" type="disc">
<li style="color:black;margin-top:0in;margin-bottom:0in;mso-list:l1 level1 lfo2;vertical-align:baseline">
<span style="font-size:14.0pt">Are there any policies directly or indirectly impeding your DNSSEC deployment? (RRR model, CDS/CDNSKEY automation)</span><span style="font-size:10.0pt"><o:p></o:p></span></li><li style="color:black;margin-top:0in;margin-bottom:0in;mso-list:l1 level1 lfo2;vertical-align:baseline">
<span style="font-size:14.0pt">What are your most significant concerns with DNSSEC, e.g., complexity, training, implementation, operation or something else?</span><span style="font-size:10.0pt"><o:p></o:p></span></li><li style="color:black;margin-top:0in;margin-bottom:0in;mso-list:l1 level1 lfo2;vertical-align:baseline">
<span style="font-size:14.0pt">What do you expect DNSSEC to do for you and what doesn't it do?</span><span style="font-size:10.0pt"><o:p></o:p></span></li><li style="color:black;margin-top:0in;margin-bottom:0in;mso-list:l1 level1 lfo2;vertical-align:baseline">
<span style="font-size:14.0pt">What do you see as the most important trade-offs with respect to doing or not doing DNSSEC?</span><span style="font-size:10.0pt"><o:p></o:p></span></li></ul>
<p style="margin:0in"><span style="font-size:14.0pt;color:black"> </span><o:p></o:p></p>
<p style="margin:0in"><b><span style="font-size:14.0pt;color:black">4. Security Panel</span></b><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black">The program committee is looking for presentations on DNS, DNSSEC, routing and other topics that could impact the security and/or stability of the Internet. </span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:13.5pt;font-family:"Times New Roman",serif;color:black"> </span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black">We are looking for presentations that cover implementation issues, challenges, opportunities and best practices for:</span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:13.5pt;font-family:"Times New Roman",serif;color:black"><br>
<br>
</span><o:p></o:p></p>
<ul style="margin-top:0in;padding-inline-start:48px" type="disc">
<li style="color:black;margin-top:0in;margin-bottom:0in;mso-list:l2 level1 lfo3;vertical-align:baseline">
<span style="font-size:14.0pt">Emerging threats that could impact the security and/or stability of the Internet</span><span style="font-size:10.0pt"><o:p></o:p></span></li><li style="color:black;margin-top:0in;margin-bottom:0in;mso-list:l2 level1 lfo3;vertical-align:baseline">
<span style="font-size:14.0pt">DoH and DoT</span><span style="font-size:10.0pt"><o:p></o:p></span></li><li style="color:black;margin-top:0in;margin-bottom:0in;mso-list:l2 level1 lfo3;vertical-align:baseline">
<span style="font-size:14.0pt">RPKI (Resource Public Key Infrastructure)</span><span style="font-size:10.0pt"><o:p></o:p></span></li><li style="color:black;margin-top:0in;margin-bottom:0in;mso-list:l2 level1 lfo3;vertical-align:baseline">
<span style="font-size:14.0pt">BGP routing & secure implementations </span><span style="font-size:10.0pt"><o:p></o:p></span></li><li style="color:black;margin-top:0in;margin-bottom:0in;mso-list:l2 level1 lfo3;vertical-align:baseline">
<span style="font-size:14.0pt">MANRS (</span><span style="font-size:12.0pt"> </span><span style="font-size:14.0pt">Mutually Agreed Norms for Routing Security)</span><span style="font-size:10.0pt"><o:p></o:p></span></li><li style="color:black;margin-top:0in;margin-bottom:0in;mso-list:l2 level1 lfo3;vertical-align:baseline">
<span style="font-size:14.0pt">Browser security – DNS, DNSSEC, DoH</span><span style="font-size:10.0pt"><o:p></o:p></span></li><li style="color:black;margin-top:0in;margin-bottom:0in;mso-list:l2 level1 lfo3;vertical-align:baseline">
<span style="font-size:14.0pt">EMAIL & DNS related security – DMARC, DKIM, TLSA, etc…</span><span style="font-size:10.0pt"><o:p></o:p></span></li></ul>
<p style="margin:0in"><span style="font-size:13.5pt;font-family:"Times New Roman",serif;color:black"> </span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black">If you are interested in participating, please send a brief (1-3 sentence) description of your proposed presentation to</span><a href="mailto:dnssec-security-workshop@icann.org"><span style="font-size:14.0pt;color:#0563C1">dnssec-security-workshop@icann.org</span></a><span style="font-size:14.0pt;color:black"> </span><b><span style="font-size:14.0pt;color:red">by
 Friday, 12 May 2023.</span></b><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black"> </span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black">Thank you,</span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black">Kathy and Andrew</span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black">On behalf of the DNSSEC Workshop Program Committee:</span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black">Steve Crocker, Shinkuro</span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black">Mark Elkins, DNS/ZACR</span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black">Jacques Latour, .CA</span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black">Russ Mundy, Parsons</span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black">Ondrej Filip, CZ.NIC</span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black">Yoshiro Yoneya, JPRS</span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black">Fred Baker, ISC</span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black">Dan York, Internet Society</span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black"> </span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:14.0pt;color:black"> </span><o:p></o:p></p>
<p style="mso-margin-top-alt:0in;margin-right:0in;margin-bottom:12.0pt;margin-left:0in">
<span style="font-size:13.5pt;font-family:"Times New Roman",serif;color:black"> </span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:13.5pt;color:black"> </span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:13.5pt;color:black"> </span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:13.5pt;color:black"> </span><o:p></o:p></p>
<p style="margin:0in"><span style="color:black"> </span><o:p></o:p></p>
<p style="margin:0in"><span style="font-size:13.5pt;color:black"> </span><o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
</div>
</body>
</html>