Event JSON
{
"id": "ad170df9d4bcd62bb59984a856c5c246dfcf9b510ad2f4e7c17f942cc296873f",
"pubkey": "4421e6f8f57df36e663f1a4568344196e61ea62eb94203c9c02d83bcb3eb9c66",
"created_at": 1707455352,
"kind": 1,
"tags": [
[
"p",
"24a040ef64690d218b40a1d4eb3ae01bcb808e0f0d483b36fe7a78ab0759dfab",
"wss://relay.mostr.pub"
],
[
"p",
"0e9f9e4f3a77b2b96503cc181e00ea38794cb2fb69059da43a26591282d1f8e8",
"wss://relay.mostr.pub"
],
[
"t",
"dns"
],
[
"t",
"dnssec"
],
[
"proxy",
"https://mastodon.social/users/jpmens/statuses/111899793951304885",
"activitypub"
]
],
"content": "In 2023, Verisign changed the DNSSEC signing algorithm for the .EDU, .NET., and .COM TLDs from RSA (algorithm 8) to ECDSA (algorithm 13). In this presentation nostr:npub1yjsypmmydyxjrz6q582wkwhqr09cprs0p4yrkdh70fu2kp6em74svtt4lx describes their conservative, double-signing approach to the algorithm rollovers, and their observations on how DNS query traffic before, during, and after each rollover.\n\nhttps://indico.dns-oarc.net/event/48/contributions/1043/attachments/1003/1927/wessels-verisign-algrolls.pdf\n\n#dns #dnssec",
"sig": "4c922329128f6b2e4ed7b8df469bff6acbc6e31627ca6b5199236ccd176c22f1306c670f6a1e64831eb3e970a90283529d8fd884b530c38bcc87009621ebf0b3"
}