[105913] in North American Network Operators' Group
Re: Multiple DNS implementations vulnerable to cache poisoning
daemon@ATHENA.MIT.EDU (Jay R. Ashworth)
Wed Jul 9 14:09:28 2008
Date: Wed, 9 Jul 2008 14:05:40 -0400
From: "Jay R. Ashworth" <jra@baylink.com>
To: nanog@nanog.org, nanog@merit.edu
In-Reply-To: <75cb24520807090905p75554c13l5f45796107551068@mail.gmail.com>
Errors-To: nanog-bounces@nanog.org
On Wed, Jul 09, 2008 at 12:05:38PM -0400, Christopher Morrow wrote:
> get the root zone signed, get com/net/org/ccTLD's signed.. oh wait,
> that's not nanog... doh!
>
> Pressure your local ICANN officers?
One of the commenters on Slashdot, who did not sound entirely like a
crank, says the root zone DNSKEYs and RRSIGs have been generated
already, and his informant is waiting for the OK to deploy them.
http://it.slashdot.org/comments.pl?sid=607413&cid=24106363
Cheers,
-- jr 'yes, yes, I know; it's /. No, I don't believe in the Easter Bunny' a
--
Jay R. Ashworth Baylink jra@baylink.com
Designer The Things I Think RFC 2100
Ashworth & Associates http://baylink.pitas.com '87 e24
St Petersburg FL USA http://photo.imageinc.us +1 727 647 1274
Those who cast the vote decide nothing.
Those who count the vote decide everything.
-- (Josef Stalin)