What are the effects of the L root server now publishing DURZ?

Posted by brent on Server Fault See other posts from Server Fault or by brent
Published on 2010-01-25T20:21:09Z Indexed on 2010/04/07 19:53 UTC
Read the original article Hit count: 331

Filed under:
|

I'm curious what the actual effects of the L root server publishing DURZ today will be. On the nanog mailing list, someone said it's important to evaluate the systemic effects of root name servers publishing signed zones, even when not using DNSSEC. Meanwhile, RIPE's own published information on their changes to the K root server say there's no issue if your resolvers don't use DNSSEC. Can someone please clear this up? DNSSEC seems to be a messy, tangled web.

If not enabling DNSSEC on my resolvers, do I have anything to worry about with the upcoming changes to the root servers?

© Server Fault or respective owner

Related posts about dnssec

Related posts about dns