[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: NSEC3-01 - more wildcard nits



Edward Lewis wrote:
PS I still have my doubts about finding a successor to NSEC. A flag day would be needed to erase existing NSEC from the DNS and be seamless. Even if the thought is that "NSEC-era" verifiers will be upgraded to overcome this, that's the flag day.

Remember that the plan does not include erasing NSEC.

--
http://www.apache-ssl.org/ben.html       http://www.thebunker.net/

"There is no limit to what a man can do or how far he can go if he
doesn't mind who gets the credit." - Robert Woodruff

--
to unsubscribe send a message to namedroppers-request@ops.ietf.org with
the word 'unsubscribe' in a single line as the message text body.
archive: <http://ops.ietf.org/lists/namedroppers/>