[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: the KEY debate



I know I'm going to regret this, but....

There is a specific problem with using the KEY RR type for things
other than DNSSEC's own internal keying.   It's called the "sub-typing
problem" and has been discussed namedroppers many times before, please
check the archives if you don't already understand the problem.

This is a totally separate discussion from whether putting keys for
things other than DNSSEC itself into the DNS is a good or bad idea.
If we stipulate that such keys should use a different RR type, I'm
relatively agnostic on the subject.

Confusing the two issues does not help anybody.

--
to unsubscribe send a message to namedroppers-request@ops.ietf.org with
the word 'unsubscribe' in a single line as the message text body.
archive: <http://ops.ietf.org/lists/namedroppers/>