On 06/09/2011 11:23 PM, Ewen McNeill wrote:
However the KSK bit size is on the sticker on the outside, and easily measurable, so is likely to be a point of comparison. Security of authorised registrars is much harder to quantify/police.
This last statement is of particular interest to me. As an authorised Registrar, so far I have only been considering the technology side of DNSSEC. Are there going to be any procedural or process specifications/guidelines that registrars are going to be required to implement/meet ? For a small player, is it even going to be possible to meet them ? Glen -- =-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= Glen and Rosanne Eustace, GodZone Internet Services, a division of AGRE Enterprises Ltd., P.O. Box 8020, Palmerston North, New Zealand 4446 Ph: +64 6 357 8168, Fax: +64 6 357 8165, Mob: +64 27 542 4015 "A Ministry specialising in providing low-cost professional Internet Services to NZ Christian Churches, Ministries and Organisations"