ICANN/DNSO
DNSO Mailling lists archives

[ga-full]


<<< Chronological Index >>>    <<< Thread Index >>>

Re: [ga] Secure DNS


Rick and everyone,

Rick H Wesson wrote:

> Harald,
>
> On Fri, 15 Sep 2000, Harald Alvestrand wrote:
>
> > Once the technology is ready, ICANN needs to decide on the procedures for
> > generating keys, signing the root zone and so on.
> > I *hope* these procedures are relatively uncontroversial; the biggest
> > practical question is probably who shall hold the pieces of the root key,
> > and how it should be secured against compromise and accidental loss.
>
> ICANN, the registries and registrars are going to have to work out how the
> protocols (currently only RRP 1.1.0) will be updated to manage the keys,
> if they are to be put into the root, the keys will have to be sent to the
> registry somehow. The discussions on how to do this have not even begun.

  As you I am sure know, this is not a difficult problem to solve.

>
>
> -rick
>
> --
> This message was passed to you via the ga@dnso.org list.
> Send mail to majordomo@dnso.org to unsubscribe
> ("unsubscribe ga" in the body of the message).
> Archives at http://www.dnso.org/archives.html

Bob Davis

_______________________________________________
Why pay for something you could get for free?
NetZero provides FREE Internet Access and Email
http://www.netzero.net/download/index.html
--
This message was passed to you via the ga-full@dnso.org list.
Send mail to majordomo@dnso.org to unsubscribe
("unsubscribe ga-full" in the body of the message).
Archives at http://www.dnso.org/archives.html



<<< Chronological Index >>>    <<< Thread Index >>>