This is a reminder that the new Key Signing Key (KSK) will be published in the 
DNS root zone starting January 11 at 00:00:00 UTC.

This will start the process of adoption of this trust anchor in RFC 5011 aware 
resolvers. We encourage operators to pay attention during this process to 
monitor for any unexpected consequences.

Publishing the KSK is part of the process of ensuring widespread adoption of 
the KSK prior to its use in signing, currently scheduled for October 2026.

For more details, please visit: https://www.iana.org/dnssec/files 

Thanks,
-- 
Andres Pavez 
Cryptographic Key Manager 



Attachment: smime.p7s
Description: S/MIME cryptographic signature

_______________________________________________
root-dnssec-announce mailing list -- [email protected]
To unsubscribe send an email to [email protected]

_______________________________________________
By submitting your personal data, you consent to the processing of your 
personal data for purposes of subscribing to this mailing list accordance with 
the ICANN Privacy Policy (https://www.icann.org/privacy/policy) and the website 
Terms of Service (https://www.icann.org/privacy/tos). You can visit the Mailman 
link above to change your membership status or configuration, including 
unsubscribing, setting digest-style delivery or disabling delivery altogether 
(e.g., for a vacation), and so on.

Reply via email to