3 Nov
2008
3 Nov
'08
5:12 p.m.
On Nov 3, 2008, at 16:05, bmanning@vacation.karoshi.com wrote:
10. The organisation that generates the root zone file must hold the private part of the zone signing key.
the imperative in this point is made with zero justification. why the "must hold"?
Well, it will be hard to sign the root if the entity that generates the zone hasn't got access to the private part of the ZSK.