BIND 9.7 promises to make DNSSEC much easier, much more human. From ISC website, it says the improvements are :
- support NSEC3;
- easier to resign zone;
- automated trust anchor management;
- support DLV;and
- support dynamic DNS configuration.
I am not sure I will be impressed by these additional features BIND 9.7. I have decided to use “Unbound” as the recursive validator and “NSD” as the DNSSEC-enabled authoritative server.
No comments:
Post a Comment