Hi all,
Ik geef ruimschoots toe dat ik de afgelopen twee jaar onder een steen
heb gelegen, maar what ever happened to het IRC kanaal?
--
Met vriendelijke groet,
Ad Trouwborst
VIVOR B.V.
Internet voor
professionals
T. 035 - 52 394 16
F. 035 - 52 394 17
W. www.vivor.net
E. info at vivor.net
Root Zone DNSSEC Deployment
Technical Status Update 2010-05-17
This is the seventh of a series of technical status updates intended
to inform a technical audience on progress in signing the root zone
of the DNS.
CHANGE IN DEPLOYMENT SCHEDULE
The date for the publication of the root zone trust anchor and the
distribution of a validatable, signed root zone originally planned
for 2010-07-01 has been changed.
This final stage of root DNSSEC deployment is now scheduled to take
place on 2010-07-15.
The schedule change is intended to allow ICANN and VeriSign an
additional two weeks for further analysis of the DURZ rollout, to
finalise testing and best ensure the secure, stable and resilient
implementation of the root DNSSEC production processes and systems.
Prior to 2010-07-15 the U.S. Department of Commerce (DoC) will issue
a public notice announcing the publication of the joint ICANN-VeriSign
testing and evaluation report as well as the intent to proceed with
the final stage of DNSSEC deployment. As part of this notice the
DoC will include a public review and comment period prior to taking
any action.
This change has been reflected in the deployment plan and other
documentation, and updated documents will be published at
<http://www.root-dnssec.org/>.
PLANNED DEPLOYMENT SCHEDULE
Already completed:
2010-01-27: L starts to serve DURZ
2010-02-10: A starts to serve DURZ
2010-03-03: M, I start to serve DURZ
2010-03-24: D, K, E start to serve DURZ
2010-04-14: B, H, C, G, F start to serve DURZ
2010-05-05: J starts to serve DURZ
To come:
2010-06-16: First Key Signing Key (KSK) Ceremony
2010-07-15: Distribution of validatable, production, signed root
zone; publication of root zone trust anchor
(Please note that this schedule is tentative and subject to change
based on testing results or other unforeseen factors.)
Root Zone DNSSEC Deployment
Technical Status Update 2010-05-05
This is the sixth of a series of technical status updates intended
to inform a technical audience on progress in signing the root zone
of the DNS.
** The final transition to a signed root zone took place today
** on J-Root, between 1700--1900 UTC.
**
** All root servers are now serving a signed root zone.
**
** All root servers will now generate larger responses to DNS
** queries that request DNSSEC information.
**
** If you experience technical problems or need to contact
** technical project staff, please send e-mail to rootsign at icann.org
** or call the ICANN DNS NOC at +1 310 301 5817, e-mail preferred
** if possible.
**
** See below for more details.
RESOURCES
Details of the project, including documentation published to date,
can be found at <http://www.root-dnssec.org/>.
We'd like to hear from you. If you have feedback for us, please
send it to rootsign at icann.org.
DEPLOYMENT STATUS
The incremental deployment of DNSSEC in the Root Zone is being
carried out first by serving a Deliberately Unvalidatable Root Zone
(DURZ), and subsequently by a conventionally signed root zone.
Discussion of the approach can be found in the document "DNSSEC
Deployment for the Root Zone", as well as in the technical presentations
delivered at RIPE, NANOG, IETF and ICANN meetings.
All of the thirteen root servers have now made the transition to
the to the DURZ. No harmful effects have been identified.
The final root server to make the transition, J-Root, started serving
the DURZ in a maintenance window between 1700--1900 UTC on 2010-05-05.
Initial observations relating to this transition will be presented
and discussed at the DNS Working Group meeting at RIPE 60 in Prague
on 2010-05-06.
PLANNED DEPLOYMENT SCHEDULE
Already completed:
2010-01-27: L starts to serve DURZ
2010-02-10: A starts to serve DURZ
2010-03-03: M, I start to serve DURZ
2010-03-24: D, K, E start to serve DURZ
2010-04-14: B, H, C, G, F start to serve DURZ
2010-05-05: J starts to serve DURZ
To come:
2010-07-01: Distribution of validatable, production, signed root
zone; publication of root zone trust anchor
(Please note that this schedule is tentative and subject to change
based on testing results or other unforeseen factors.)
Root Zone DNSSEC Deployment
Technical Status Update 2010-05-03
This is the fifth of a series of technical status updates intended
to inform a technical audience on progress in signing the root zone
of the DNS.
** The final transition to the DURZ will take place on
** J-Root, on 2010-05-05 between 1700--1900 UTC.
**
** After that maintenance all root servers will be serving the
** DURZ, and will generate larger responses to DNS
** queries that request DNSSEC information.
**
** If you experience technical problems or need to contact
** technical project staff, please send e-mail to rootsign at icann.org
** or call the ICANN DNS NOC at +1 310 301 5817, e-mail preferred
** if possible.
**
** See below for more details.
RESOURCES
Details of the project, including documentation published to date,
can be found at <http://www.root-dnssec.org/>.
We'd like to hear from you. If you have feedback for us, please
send it to rootsign at icann.org.
DEPLOYMENT STATUS
The incremental deployment of DNSSEC in the Root Zone is being
carried out first by serving a Deliberately Unvalidatable Root Zone
(DURZ), and subsequently by a conventionally signed root zone.
Discussion of the approach can be found in the document "DNSSEC
Deployment for the Root Zone", as well as in the technical presentations
delivered at RIPE, NANOG, IETF and ICANN meetings.
Twelve of the thirteen root servers have already made the transition
to the DURZ. No harmful effects have been identified.
The final root server to make the transition, J-Root, will start
serving the DURZ in a maintenance window scheduled for 1700--1900
UTC on 2010-05-05.
Initial observations relating to this transition will be presented
and discussed at the DNS Working Group meeting at the RIPE meeting
in Prague on 2010-05-06.
PLANNED DEPLOYMENT SCHEDULE
Already completed:
2010-01-27: L starts to serve DURZ
2010-02-10: A starts to serve DURZ
2010-03-03: M, I start to serve DURZ
2010-03-24: D, K, E start to serve DURZ
2010-04-14: B, H, C, G, F start to serve DURZ
To come:
2010-05-05: J starts to serve DURZ
2010-07-01: Distribution of validatable, production, signed root
zone; publication of root zone trust anchor
(Please note that this schedule is tentative and subject to change
based on testing results or other unforeseen factors.)
A more detailed DURZ transition timetable with maintenance windows
can be found in the document "DNSSEC Deployment for the Root Zone",
the most recent draft of which can be found on the project web page
at <http://www.root-dnssec.org/>.