Breaking trusted chain in dnssec

Warren Kumari warren at kumari.net
Wed Jul 13 12:55:36 UTC 2016


Or nsec3 with opt-out?

The question is unclear...

W

On Wednesday, July 13, 2016, Tony Finch <dot at dotat.at> wrote:

> rams <bramesh80 at gmail.com <javascript:;>> wrote:
>
> > Is any one explain how to break trusted chain in dnssec with example how
> to
> > create zone or data with trusted chain break.
>
> Create a delegation without a DS record.
>
> Tony.
> --
> f.anthony.n.finch  <dot at dotat.at <javascript:;>>  http://dotat.at/  -  I
> xn--zr8h punycode
> Lundy, Fastnet, Irish Sea: West or northwest 4 or 5, increasing 6 at times.
> Slight or moderate. Showers. Good.
> _______________________________________________
> Please visit https://lists.isc.org/mailman/listinfo/bind-users to
> unsubscribe from this list
>
> bind-users mailing list
> bind-users at lists.isc.org <javascript:;>
> https://lists.isc.org/mailman/listinfo/bind-users
>


-- 
I don't think the execution is relevant when it was obviously a bad idea in
the first place.
This is like putting rabid weasels in your pants, and later expressing
regret at having chosen those particular rabid weasels and that pair of
pants.
   ---maf
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.isc.org/pipermail/bind-users/attachments/20160713/9717f486/attachment.html>


More information about the bind-users mailing list