DNSSEC protocol update 1
DS specification is in an advanced state
- Implemented in bind9.3s20020722
- Workshop to test DS specs and implementation (DC august 28-30 2002)
Results:
- Unspecified protocol element
- Requirements for tools
- Gained some experience with DS caching behavior.
- Key exchange and rollover problems are solved with DS
- DS spec is about to be frozen
- Not backward compatible with current DNSSEC standard
- Flag date will depend on OPT-IN