[Opendnssec-user] DS TTL in parent config

Dick Visser visser at terena.org
Mon Feb 27 21:20:35 UTC 2012


Hi

I'm reading up on all the docs again, and I have a question about the
Parent/DS/TTL configuration.
According to https://wiki.opendnssec.org/display/DOCS/kasp.xml#kaspxml-ParentZoneInformation:

"The <DS> tag holds information about the DS record in the parent. It
contains a single element, <TTL>, which should be set to the TTL of
the DS record in the parent zone. "

My domain sits in .org. How do I figure this out? It looks like a
chicken and egg problem...
I didn't publish the DS, so I don't know the TTL.
But in order to publish, I need to configure the TTL.

I looked at some other DS records in .org for example those for
comcast.org, iana.org and pir.org, and they all use 86400.
So I guess I'll have to use that, too.

I can see that for various .nl domains it is substantially lower, namely 7200.


But who/what decides on this value?
Is this a fixed number per-TLD? Or per registrar? Or per domain?

THasnk !!

-- 
Dick Visser
System & Networking Engineer
TERENA Secretariat
Singel 468 D, 1017 AW Amsterdam
The Netherlands



More information about the Opendnssec-user mailing list