On Thu, Aug 28, 2008 at 12:04:15AM -0400, Brian Dickson wrote:
> 
> The DS may be provided by the operator of the subordinate zone, or built 
> by the parent operator,
> most likely the latter.


        thats an interesting premise.  
        why do you think this will be the case?
        
        (I would posit that the folks generating the DNSKEY will also 
        want to generate the DS hash on their known, trusted signing tools
        instead of trusting the parent w/ the DNSKEY materials)


> Brian


--bill

_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to