reply: reply: reply: [Opendnssec-develop] signed serial > unsigned serial?

wangguodong wanggd at
Thu Sep 12 08:15:44 UTC 2013


Yes, you are right.  It's not restrict an unsigned zone or signed zone.


I am sorry for that.


The zone can be accessed by a third party such as the data escrow provider,
so unsigned zone may be also useful.





发件人: Olaf Kolkman [mailto:olaf at] 
发送时间: 2013年9月11日 20:23
收件人: Jakob Schlyter
抄送: wangguodong; opendnssec-develop at
主题: Re: reply: reply: [Opendnssec-develop] signed serial > unsigned



On 11 sep. 2013, at 13:49, Jakob Schlyter <jakob at> wrote:

I cannot see where the AGB states it is the unsigned zone that is to be


Me neither, nor do I understand why the AGB would call for a zone different
from the zone that appeared in the DNS.


If ICANN where to clarify that the AGB should be interpreted that an
unsigned zone is to be served then I would like to see the motivation for
that requirement.



-------------- next part --------------
An HTML attachment was scrubbed...
URL: <>

More information about the Opendnssec-develop mailing list