DNSKEY Validation

Mark Andrews marka at isc.org
Tue Jul 14 07:50:22 UTC 2009


In message <1247555725.13064.4.camel at ilinux>, Mark Elkins writes:
> OK - so I accept that the algorithm will change.
> 
> What about some sort of validation of the base-64 part of the key?
> Is there a checksum byte/word?
> Is there a way of checking that the length is correct?

Have you thought of reading the RFCs which describe these records?
The answers to your questions are in the RFCs.

Mark
-- 
Mark Andrews, ISC
1 Seymour St., Dundas Valley, NSW 2117, Australia
PHONE: +61 2 9871 4742                 INTERNET: marka at isc.org



More information about the bind-users mailing list