[148296] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Comcast DNSSEC

daemon@ATHENA.MIT.EDU (Jeremy Bresley)
Tue Jan 10 18:25:48 2012

Date: Tue, 10 Jan 2012 17:24:47 -0600
From: Jeremy Bresley <brez@brezworks.com>
To: nanog@nanog.org
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

Hadn't seen this mentioned yet.

http://blog.comcast.com/2012/01/comcast-completes-dnssec-deployment.html

Comcast has signed all their managed domains, as well as deployed DNSSEC 
resolvers for their customers.  And they're encouraging others to make 
the jump to DNSSEC now as well, especially e-comm/banking sites.

Nice work guys, any of the Comcast guys on the list want to give us an 
idea how much work is involved in this from a large-scale service 
provider perspective to do it?  Any big caveats you encountered that 
people should watch out for?

Jeremy "TheBrez" Bresley
brez@brezworks.com


home help back first fref pref prev next nref lref last post