BIND9 DNSSEC algorithm rollover for inline-signed zone

Sebastian Wiesinger sebastian at karotte.org
Tue Oct 11 13:06:35 UTC 2016


* Jim Popovitch <jimpop at gmail.com> [2016-10-10 23:42]:
> On Mon, Oct 10, 2016 at 7:51 AM, Sebastian Wiesinger
> <sebastian at karotte.org> wrote:
> >
> > http://dnsviz.net/d/blau.beer/V_tTtQ/dnssec/
> >
> > After the DS TTL expired I removed the old DS, so the zone now looks
> > like this:
> >
> > http://dnsviz.net/d/blau.beer/V_t2Hg/dnssec/
> >
> 
> TBH, the prior one looks cooler than the later.

I know, right? Sadly all coolness is temporary.


-- 
GPG Key: 0x93A0B9CE (F4F6 B1A3 866B 26E9 450A  9D82 58A2 D94A 93A0 B9CE)
'Are you Death?' ... IT'S THE SCYTHE, ISN'T IT? PEOPLE ALWAYS NOTICE THE SCYTHE.
            -- Terry Pratchett, The Fifth Elephant


More information about the bind-users mailing list