Hi > Not trying to start a flame war, but the logical conclusion is that > for many use cases you > will gain a tiny bit of security by not signing your IPv6 reverse > zones - since the actual impact > of cache poisoning on reverse zones might be more limited than that of > easy enumeration > of the network. :-)
Assuming that Olafs answer was limited to signed zones, which of course it wasn't. How embarrasing. :-) I will get back under my lurking rock now. /Jimmy _______________________________________________ Opendnssec-user mailing list [email protected] https://lists.opendnssec.org/mailman/listinfo/opendnssec-user
