DNSSEC

I am one of the Trusted Community Representatives who have the responsibility of witnessing the process by which the Root Zone of the DNS is signed. See http://www.root-dnssec.org/tcr/ for more details.

You can see the list of representatives at http://www.root-dnssec.org/tcr/selection-2010/

I will post a declaration about my participation on this page after each ceremony I take part in.

You may choose to subscribe to the RSS feed below - the number of posts will be very low.

DNSSEC Root Key declaration 2

posted Feb 7, 2011 5:19 PM by Andy Linton   [ updated Feb 7, 2011 5:34 PM ]

On 7 February I was a witness at the fourth KSK ceremony for the root zone in El Segundo, CA, USA. The Ceremony Administrator was Mehmet Akcin.

The fourth  production Key Signing Request (KSR) generated by VeriSign was processed by ICANN using the root zone KSK generated in KSK Ceremony 1, and the resulting Signed Key Response (SKR) has been accepted by VeriSign. This SKR contains signatures for Q2 2011, for use between 2011-04-01 and 2011-06-30.

The representation of this key in the DS RR format is as follows:

. IN DS 19036 8 2 49AAC11D7B6F6446702E54A1607371607A1A41855200FD2CE1CDDE32F24E8FB5

For more information about the publication of the trust anchor see:

https://data.iana.org/root-anchors/draft-icann-dnssec-trust-anchor.html

For more information on the signing of the root see:

http://www.root-dnssec.org/

Andy Linton

DNSSEC Root Key declaration 1

posted Dec 13, 2010 2:42 PM by Andy Linton   [ updated Dec 20, 2010 3:53 PM ]

On 12 July 2010 I was a witness at the second KSK ceremony for the root zone in El Segundo, CA, USA. The Ceremony Administrator was Mehmet Akcin.

The second production Key Signing Request (KSR) generated by VeriSign was processed by ICANN using the root zone KSK generated in KSK Ceremony 1, and the resulting Signed Key Response (SKR) has been accepted by VeriSign. This SKR contains signatures for Q4 2010, for use between 2010-10-01 and 2010-12-31.

The representation of this key in the DS RR format is as follows:

. IN DS 19036 8 2 49AAC11D7B6F6446702E54A1607371607A1A41855200FD2CE1CDDE32F24E8FB5

For more information about the publication of the trust anchor see:

https://data.iana.org/root-anchors/draft-icann-dnssec-trust-anchor.html

For more information on the signing of the root see:

http://www.root-dnssec.org/

Andy Linton

1-2 of 2