Re: Dnssec

Home Forums Networking General Networking Dnssec Re: Dnssec


L4ndy
Member
#276722

Re: Dnssec

Why the 5th of may? It looks like 7 out of 13 root servers and some country level domain servers are returning signed packets already http://www.h-online.com/security/news/item/More-security-for-root-DNS-servers-962569.html.
If you are using root hints, remove all the other servers and leave , let’s say the K-root server and monitor the impact.
I have noticed this RFC: http://tools.ietf.org/html/rfc3226 mentioning about the UDP packet sizes.