Checking ahead of the DNSSEC root KSK rollover ... all my resolvers have a ttl > 24h for the root DNSKEY RRset, so I plan to give them a delicate kick after H-hour to ensure things are OK before I head to Amsterdam tomorrow
3
3
6
I've had to deal with a number of KSK rollovers for the first time in production recently. I only fluffed up one of them (the most important one) :-)
I need to see if I can automate GANDI to update the KSKs
2
Oooh whassat?
Oct 11, 2018 Β· 12:10 PM UTC
2


