From francisco at arias.com.mx Wed Mar 10 22:01:36 2010 From: francisco at arias.com.mx (Francisco Arias) Date: Wed, 10 Mar 2010 17:01:36 -0800 Subject: [lacnog] Fwd: Signing of the ARPA zone In-Reply-To: References: Message-ID: En cuesti?n de d?as (entre 2010-03-15 0001 UTC y 2010-03-17 2359 UTC) se estar? firmando la zona ARPA. M?s detalles abajo. Saludos, Francisco. ---------- Forwarded message ---------- From: Joe Abley Date: 10 March 2010 16:53 Subject: [dns-operations] Signing of the ARPA zone To: "dns-operations at dns-oarc.net" Colleagues, This is a technical, operational announcement regarding changes to the ARPA top-level domain. Apologies in advance for duplicates received through different mailing lists. No specific action is requested of operators. This message is for your information only. The ARPA zone is about to be signed using DNSSEC. The technical parameters by which ARPA will be signed are as follows: KSK Algorithm and Size: 2048 bit RSA KSK Rollover: every 2-5 years, scheduled rollover to follow RFC 5011 KSK Signature Algorithm: SHA-256 Validity period for signatures made with KSK: 15 days; new signatures published every 10 days ZSK Algorithm and Size: 1024 bit RSA ZSK Rollover: every 3 months ZSK Signature Algorithm: SHA-256 Authenticated proof of non-existence: NSEC Validity period for signatures made with ZSK: 7 days; zone generated and re-signed twice per day The twelve root server operators [1] will begin to serve a signed ARPA zone instead of the (current) unsigned ARPA zone during a maintenance window which will open at 2010-03-15 0001 UTC and close at 2010-03-17 2359 UTC. Individual root server operators will carry out their maintenance at times within that window according to their own operational preference. The trust anchor for the ARPA zone will be published in the ITAR [2], and in the root zone in the form of a DS record once the root zone is signed. If you have any concerns or require further information, please let me know. Regards, Joe Abley Director DNS Operations, ICANN [1] [2] _______________________________________________ dns-operations mailing list dns-operations at lists.dns-oarc.net https://lists.dns-oarc.net/mailman/listinfo/dns-operations From joe.abley at icann.org Wed Mar 17 18:51:28 2010 From: joe.abley at icann.org (Joe Abley) Date: Wed, 17 Mar 2010 14:51:28 -0700 Subject: [lacnog] Signing of the ARPA zone Message-ID: Colleagues, This is a follow-up to the operational announcement regarding changes to the ARPA top-level domain that was sent on 2010-03-10. Apologies in advance for duplicates received through different mailing lists. As of 2010-03-17 1630 UTC all the authoritative servers for ARPA are serving a signed ARPA zone. We would like to solicit feedback from the technical community to allow us to identify any operational ill-effects that this change has caused. We will monitor this mailing list for feedback, and I will also distribute any feedback sent to me personally so that it can be considered. If no harmful effects have been identified by 2010-03-21 the trust anchor for the ARPA zone will be published through the IANA ITAR at . Regards, Joe Begin forwarded message: > From: Joe Abley > Date: 10 March 2010 16:13:46 EST > To: Joe Abley > Subject: Signing of the ARPA zone > > Colleagues, > > This is a technical, operational announcement regarding changes to the ARPA top-level domain. Apologies in advance for duplicates received through different mailing lists. > > No specific action is requested of operators. This message is for your information only. > > The ARPA zone is about to be signed using DNSSEC. The technical parameters by which ARPA will be signed are as follows: > > KSK Algorithm and Size: 2048 bit RSA > KSK Rollover: every 2-5 years, scheduled rollover to follow RFC 5011 > KSK Signature Algorithm: SHA-256 > Validity period for signatures made with KSK: 15 days; new signatures published every 10 days > ZSK Algorithm and Size: 1024 bit RSA > ZSK Rollover: every 3 months > ZSK Signature Algorithm: SHA-256 > Authenticated proof of non-existence: NSEC > Validity period for signatures made with ZSK: 7 days; zone generated and re-signed twice per day > > The twelve root server operators [1] will begin to serve a signed ARPA zone instead of the (current) unsigned ARPA zone during a maintenance window which will open at 2010-03-15 0001 UTC and close at 2010-03-17 2359 UTC. Individual root server operators will carry out their maintenance at times within that window according to their own operational preference. > > The trust anchor for the ARPA zone will be published in the ITAR [2], and in the root zone in the form of a DS record once the root zone is signed. > > If you have any concerns or require further information, please let me know. > > Regards, > > > Joe Abley > Director DNS Operations, ICANN > > [1] > [2] From nicolas at ula.ve Mon Mar 22 21:26:41 2010 From: nicolas at ula.ve (=?UTF-8?B?Tmljb2zDoXMgUnVpeg==?=) Date: Mon, 22 Mar 2010 19:26:41 -0500 Subject: [lacnog] Signing of the ARPA zone In-Reply-To: References: Message-ID: <4BA80AC1.4040301@ula.ve> Podr?a alguien m?s familiarizado con todo este proceso comentar un poco sobre esto? Yo en particular estoy bien crudo, pero no s? por donde comenzar. nicol?s Joe Abley wrote: > Colleagues, > > This is a follow-up to the operational announcement regarding changes to the ARPA top-level domain that was sent on 2010-03-10. Apologies in advance for duplicates received through different mailing lists. > > As of 2010-03-17 1630 UTC all the authoritative servers for ARPA are serving a signed ARPA zone. > > We would like to solicit feedback from the technical community to allow us to identify any operational ill-effects that this change has caused. We will monitor this mailing list for feedback, and I will also distribute any feedback sent to me personally so that it can be considered. > > If no harmful effects have been identified by 2010-03-21 the trust anchor for the ARPA zone will be published through the IANA ITAR at . > > Regards, > > > Joe > > Begin forwarded message: > >> From: Joe Abley >> Date: 10 March 2010 16:13:46 EST >> To: Joe Abley >> Subject: Signing of the ARPA zone >> >> Colleagues, >> >> This is a technical, operational announcement regarding changes to the ARPA top-level domain. Apologies in advance for duplicates received through different mailing lists. >> >> No specific action is requested of operators. This message is for your information only. >> >> The ARPA zone is about to be signed using DNSSEC. The technical parameters by which ARPA will be signed are as follows: >> >> KSK Algorithm and Size: 2048 bit RSA >> KSK Rollover: every 2-5 years, scheduled rollover to follow RFC 5011 >> KSK Signature Algorithm: SHA-256 >> Validity period for signatures made with KSK: 15 days; new signatures published every 10 days >> ZSK Algorithm and Size: 1024 bit RSA >> ZSK Rollover: every 3 months >> ZSK Signature Algorithm: SHA-256 >> Authenticated proof of non-existence: NSEC >> Validity period for signatures made with ZSK: 7 days; zone generated and re-signed twice per day >> >> The twelve root server operators [1] will begin to serve a signed ARPA zone instead of the (current) unsigned ARPA zone during a maintenance window which will open at 2010-03-15 0001 UTC and close at 2010-03-17 2359 UTC. Individual root server operators will carry out their maintenance at times within that window according to their own operational preference. >> >> The trust anchor for the ARPA zone will be published in the ITAR [2], and in the root zone in the form of a DS record once the root zone is signed. >> >> If you have any concerns or require further information, please let me know. >> >> Regards, >> >> >> Joe Abley >> Director DNS Operations, ICANN >> >> [1] >> [2] > > _______________________________________________ > LACNOG mailing list > LACNOG at lacnic.net > https://mail.lacnic.net/mailman/listinfo/lacnog > From hsalgado at nic.cl Mon Mar 22 21:57:40 2010 From: hsalgado at nic.cl (Hugo Salgado Hernandez) Date: Mon, 22 Mar 2010 20:57:40 -0400 Subject: [lacnog] Signing of the ARPA zone In-Reply-To: <4BA80AC1.4040301@ula.ve> References: <4BA80AC1.4040301@ula.ve> Message-ID: <4BA81204.9080306@nic.cl> Hola Nicol?s. Es un anuncio que el top level domain ".arpa" empez? a firmar su zona con dnssec. Como es un dominio cr?tico (se consulta para obtener los reversos) es importante ir con cautela, determinando si todo sigue funcionando bien. Dentro de las pruebas est? desde hacer un comando % host para ver si obtenemos respuesta del inverso, o equivalentemente % dig -x Para mayor detalle se puede consultar por los registros DNSSEC relevantes: % dig dnskey arpa. % dig ns arpa. +dnssec % dig any aaaa.arpa. +dnssec Lo importante es ver si el resolver es capaz de obtener las respuestas DNS m?s grandes que se generan al firmar. Una prueba m?s completa (aunque no relacionada espec?ficamente con .arpa) la puedes encontrar en https://www.dns-oarc.net/oarc/services/replysizetest Saludos, Hugo Salgado NIC Chile - .CL Nicol?s Ruiz wrote: > Podr?a alguien m?s familiarizado con todo este proceso comentar un poco > sobre esto? Yo en particular estoy bien crudo, pero no s? por donde > comenzar. > > nicol?s > > Joe Abley wrote: >> Colleagues, >> >> This is a follow-up to the operational announcement regarding changes >> to the ARPA top-level domain that was sent on 2010-03-10. Apologies in >> advance for duplicates received through different mailing lists. >> >> As of 2010-03-17 1630 UTC all the authoritative servers for ARPA are >> serving a signed ARPA zone. >> >> We would like to solicit feedback from the technical community to >> allow us to identify any operational ill-effects that this change has >> caused. We will monitor this mailing list for feedback, and I will >> also distribute any feedback sent to me personally so that it can be >> considered. >> >> If no harmful effects have been identified by 2010-03-21 the trust >> anchor for the ARPA zone will be published through the IANA ITAR at >> . >> >> Regards, >> >> >> Joe >> >> Begin forwarded message: >> >>> From: Joe Abley >>> Date: 10 March 2010 16:13:46 EST >>> To: Joe Abley >>> Subject: Signing of the ARPA zone >>> >>> Colleagues, >>> >>> This is a technical, operational announcement regarding changes to >>> the ARPA top-level domain. Apologies in advance for duplicates >>> received through different mailing lists. >>> >>> No specific action is requested of operators. This message is for >>> your information only. >>> >>> The ARPA zone is about to be signed using DNSSEC. The technical >>> parameters by which ARPA will be signed are as follows: >>> >>> KSK Algorithm and Size: 2048 bit RSA >>> KSK Rollover: every 2-5 years, scheduled rollover to follow RFC 5011 >>> KSK Signature Algorithm: SHA-256 >>> Validity period for signatures made with KSK: 15 days; new signatures >>> published every 10 days >>> ZSK Algorithm and Size: 1024 bit RSA >>> ZSK Rollover: every 3 months >>> ZSK Signature Algorithm: SHA-256 >>> Authenticated proof of non-existence: NSEC >>> Validity period for signatures made with ZSK: 7 days; zone generated >>> and re-signed twice per day >>> >>> The twelve root server operators [1] will begin to serve a signed >>> ARPA zone instead of the (current) unsigned ARPA zone during a >>> maintenance window which will open at 2010-03-15 0001 UTC and close >>> at 2010-03-17 2359 UTC. Individual root server operators will carry >>> out their maintenance at times within that window according to their >>> own operational preference. >>> >>> The trust anchor for the ARPA zone will be published in the ITAR [2], >>> and in the root zone in the form of a DS record once the root zone is >>> signed. >>> >>> If you have any concerns or require further information, please let >>> me know. >>> >>> Regards, >>> >>> >>> Joe Abley >>> Director DNS Operations, ICANN >>> >>> [1] >>> [2] >> >> _______________________________________________ >> LACNOG mailing list >> LACNOG at lacnic.net >> https://mail.lacnic.net/mailman/listinfo/lacnog >> > > _______________________________________________ > LACNOG mailing list > LACNOG at lacnic.net > https://mail.lacnic.net/mailman/listinfo/lacnog From Joao at c-l-i.net Mon Mar 22 22:03:06 2010 From: Joao at c-l-i.net (Joao Damas) Date: Mon, 22 Mar 2010 18:03:06 -0700 Subject: [lacnog] Signing of the ARPA zone In-Reply-To: <4BA80AC1.4040301@ula.ve> References: <4BA80AC1.4040301@ula.ve> Message-ID: no hay mucho que decir, la verdad. La zona .arpa del DNS est? ahora firmada con DNSSEC y se est? trabajando en limpiar la estructura de delegaciones en arpa para a continuaci?n firmar con DNSSEC las zonas contenidas en arpa (por ejemplo in-addr.arpa, ip6.arpa, etc), e164.arpa ya est? firmada desde hace tiempo. Ahora se pueden verificar las respuestas de DNS configurando la clave para .arpa en su servidor de nombres y a partir de julio, cuando se firme tambi?n la ra?z del DNS (el dominio ".") se podr? seguir la cadena de verificaciones desde ah?. Posteriormente imagino que los RIRs ir?n firmando sus zonas bajo in- addr.arpa e ip6.arpa y asi hasta llegar hasta los usuarios del espacio de direcciones que mantienen su propio DNS inverso Saludos Joao On 22 Mar 2010, at 17:26, Nicol?s Ruiz wrote: > Podr?a alguien m?s familiarizado con todo este proceso comentar un > poco sobre esto? Yo en particular estoy bien crudo, pero no s? por > donde comenzar. > > nicol?s > > Joe Abley wrote: >> Colleagues, >> This is a follow-up to the operational announcement regarding >> changes to the ARPA top-level domain that was sent on 2010-03-10. >> Apologies in advance for duplicates received through different >> mailing lists. >> As of 2010-03-17 1630 UTC all the authoritative servers for ARPA >> are serving a signed ARPA zone. >> We would like to solicit feedback from the technical community to >> allow us to identify any operational ill-effects that this change >> has caused. We will monitor this mailing list for feedback, and I >> will also distribute any feedback sent to me personally so that it >> can be considered. >> If no harmful effects have been identified by 2010-03-21 the trust >> anchor for the ARPA zone will be published through the IANA ITAR at >> . >> Regards, >> Joe >> Begin forwarded message: >>> From: Joe Abley >>> Date: 10 March 2010 16:13:46 EST >>> To: Joe Abley >>> Subject: Signing of the ARPA zone >>> >>> Colleagues, >>> >>> This is a technical, operational announcement regarding changes to >>> the ARPA top-level domain. Apologies in advance for duplicates >>> received through different mailing lists. >>> >>> No specific action is requested of operators. This message is for >>> your information only. >>> >>> The ARPA zone is about to be signed using DNSSEC. The technical >>> parameters by which ARPA will be signed are as follows: >>> >>> KSK Algorithm and Size: 2048 bit RSA >>> KSK Rollover: every 2-5 years, scheduled rollover to follow RFC 5011 >>> KSK Signature Algorithm: SHA-256 >>> Validity period for signatures made with KSK: 15 days; new >>> signatures published every 10 days >>> ZSK Algorithm and Size: 1024 bit RSA >>> ZSK Rollover: every 3 months >>> ZSK Signature Algorithm: SHA-256 >>> Authenticated proof of non-existence: NSEC >>> Validity period for signatures made with ZSK: 7 days; zone >>> generated and re-signed twice per day >>> >>> The twelve root server operators [1] will begin to serve a signed >>> ARPA zone instead of the (current) unsigned ARPA zone during a >>> maintenance window which will open at 2010-03-15 0001 UTC and >>> close at 2010-03-17 2359 UTC. Individual root server operators >>> will carry out their maintenance at times within that window >>> according to their own operational preference. >>> >>> The trust anchor for the ARPA zone will be published in the ITAR >>> [2], and in the root zone in the form of a DS record once the root >>> zone is signed. >>> >>> If you have any concerns or require further information, please >>> let me know. >>> >>> Regards, >>> >>> >>> Joe Abley >>> Director DNS Operations, ICANN >>> >>> [1] >>> [2] >> _______________________________________________ >> LACNOG mailing list >> LACNOG at lacnic.net >> https://mail.lacnic.net/mailman/listinfo/lacnog > > _______________________________________________ > LACNOG mailing list > LACNOG at lacnic.net > https://mail.lacnic.net/mailman/listinfo/lacnog From edgardo_leal at hotmail.com Tue Mar 23 17:12:52 2010 From: edgardo_leal at hotmail.com (Edgardo Leal) Date: Tue, 23 Mar 2010 13:12:52 -0700 Subject: [lacnog] Signing of the ARPA zone In-Reply-To: References: , <4BA80AC1.4040301@ula.ve>, Message-ID: hola creo ke se estan ekivocando con sus mails.... me han esatad mandando una informacion que desconosco y ke no me interesa:) > From: Joao at c-l-i.net > To: lacnog at lacnic.net > Date: Mon, 22 Mar 2010 18:03:06 -0700 > Subject: Re: [lacnog] Signing of the ARPA zone > > no hay mucho que decir, la verdad. > La zona .arpa del DNS est? ahora firmada con DNSSEC y se est? > trabajando en limpiar la estructura de delegaciones en arpa para a > continuaci?n firmar con DNSSEC las zonas contenidas en arpa (por > ejemplo in-addr.arpa, ip6.arpa, etc), e164.arpa ya est? firmada desde > hace tiempo. > Ahora se pueden verificar las respuestas de DNS configurando la clave > para .arpa en su servidor de nombres y a partir de julio, cuando se > firme tambi?n la ra?z del DNS (el dominio ".") se podr? seguir la > cadena de verificaciones desde ah?. > > Posteriormente imagino que los RIRs ir?n firmando sus zonas bajo in- > addr.arpa e ip6.arpa y asi hasta llegar hasta los usuarios del espacio > de direcciones que mantienen su propio DNS inverso > > Saludos > Joao > > On 22 Mar 2010, at 17:26, Nicol?s Ruiz wrote: > > > Podr?a alguien m?s familiarizado con todo este proceso comentar un > > poco sobre esto? Yo en particular estoy bien crudo, pero no s? por > > donde comenzar. > > > > nicol?s > > > > Joe Abley wrote: > >> Colleagues, > >> This is a follow-up to the operational announcement regarding > >> changes to the ARPA top-level domain that was sent on 2010-03-10. > >> Apologies in advance for duplicates received through different > >> mailing lists. > >> As of 2010-03-17 1630 UTC all the authoritative servers for ARPA > >> are serving a signed ARPA zone. > >> We would like to solicit feedback from the technical community to > >> allow us to identify any operational ill-effects that this change > >> has caused. We will monitor this mailing list for feedback, and I > >> will also distribute any feedback sent to me personally so that it > >> can be considered. > >> If no harmful effects have been identified by 2010-03-21 the trust > >> anchor for the ARPA zone will be published through the IANA ITAR at > >> . > >> Regards, > >> Joe > >> Begin forwarded message: > >>> From: Joe Abley > >>> Date: 10 March 2010 16:13:46 EST > >>> To: Joe Abley > >>> Subject: Signing of the ARPA zone > >>> > >>> Colleagues, > >>> > >>> This is a technical, operational announcement regarding changes to > >>> the ARPA top-level domain. Apologies in advance for duplicates > >>> received through different mailing lists. > >>> > >>> No specific action is requested of operators. This message is for > >>> your information only. > >>> > >>> The ARPA zone is about to be signed using DNSSEC. The technical > >>> parameters by which ARPA will be signed are as follows: > >>> > >>> KSK Algorithm and Size: 2048 bit RSA > >>> KSK Rollover: every 2-5 years, scheduled rollover to follow RFC 5011 > >>> KSK Signature Algorithm: SHA-256 > >>> Validity period for signatures made with KSK: 15 days; new > >>> signatures published every 10 days > >>> ZSK Algorithm and Size: 1024 bit RSA > >>> ZSK Rollover: every 3 months > >>> ZSK Signature Algorithm: SHA-256 > >>> Authenticated proof of non-existence: NSEC > >>> Validity period for signatures made with ZSK: 7 days; zone > >>> generated and re-signed twice per day > >>> > >>> The twelve root server operators [1] will begin to serve a signed > >>> ARPA zone instead of the (current) unsigned ARPA zone during a > >>> maintenance window which will open at 2010-03-15 0001 UTC and > >>> close at 2010-03-17 2359 UTC. Individual root server operators > >>> will carry out their maintenance at times within that window > >>> according to their own operational preference. > >>> > >>> The trust anchor for the ARPA zone will be published in the ITAR > >>> [2], and in the root zone in the form of a DS record once the root > >>> zone is signed. > >>> > >>> If you have any concerns or require further information, please > >>> let me know. > >>> > >>> Regards, > >>> > >>> > >>> Joe Abley > >>> Director DNS Operations, ICANN > >>> > >>> [1] > >>> [2] > >> _______________________________________________ > >> LACNOG mailing list > >> LACNOG at lacnic.net > >> https://mail.lacnic.net/mailman/listinfo/lacnog > > > > _______________________________________________ > > LACNOG mailing list > > LACNOG at lacnic.net > > https://mail.lacnic.net/mailman/listinfo/lacnog > > _______________________________________________ > LACNOG mailing list > LACNOG at lacnic.net > https://mail.lacnic.net/mailman/listinfo/lacnog _________________________________________________________________ Prefiero un d?a sin coche que sin Messenger www.vivirmessenger.com ------------ pr?xima parte ------------ Se ha borrado un adjunto en formato HTML... URL: From ca at cafonso.ca Wed Mar 24 08:08:11 2010 From: ca at cafonso.ca (Carlos A. Afonso) Date: Wed, 24 Mar 2010 08:08:11 -0300 Subject: [lacnog] Signing of the ARPA zone In-Reply-To: References: , <4BA80AC1.4040301@ula.ve>, Message-ID: <4BA9F29B.2010008@cafonso.ca> Parece que faltan letras en el teclado de tu computadora. :) Un teclado nuevo cuesta muy poco ;) --c.a. Edgardo Leal wrote: > hola creo ke se estan ekivocando con sus mails.... me han esatad mandando una informacion que desconosco y ke no me interesa:) > > > > > > > > >> From: Joao at c-l-i.net >> To: lacnog at lacnic.net >> Date: Mon, 22 Mar 2010 18:03:06 -0700 >> Subject: Re: [lacnog] Signing of the ARPA zone >> >> no hay mucho que decir, la verdad. >> La zona .arpa del DNS est? ahora firmada con DNSSEC y se est? >> trabajando en limpiar la estructura de delegaciones en arpa para a >> continuaci?n firmar con DNSSEC las zonas contenidas en arpa (por >> ejemplo in-addr.arpa, ip6.arpa, etc), e164.arpa ya est? firmada desde >> hace tiempo. >> Ahora se pueden verificar las respuestas de DNS configurando la clave >> para .arpa en su servidor de nombres y a partir de julio, cuando se >> firme tambi?n la ra?z del DNS (el dominio ".") se podr? seguir la >> cadena de verificaciones desde ah?. >> >> Posteriormente imagino que los RIRs ir?n firmando sus zonas bajo in- >> addr.arpa e ip6.arpa y asi hasta llegar hasta los usuarios del espacio >> de direcciones que mantienen su propio DNS inverso >> >> Saludos >> Joao >> >> On 22 Mar 2010, at 17:26, Nicol?s Ruiz wrote: >> >>> Podr?a alguien m?s familiarizado con todo este proceso comentar un >>> poco sobre esto? Yo en particular estoy bien crudo, pero no s? por >>> donde comenzar. >>> >>> nicol?s >>> >>> Joe Abley wrote: >>>> Colleagues, >>>> This is a follow-up to the operational announcement regarding >>>> changes to the ARPA top-level domain that was sent on 2010-03-10. >>>> Apologies in advance for duplicates received through different >>>> mailing lists. >>>> As of 2010-03-17 1630 UTC all the authoritative servers for ARPA >>>> are serving a signed ARPA zone. >>>> We would like to solicit feedback from the technical community to >>>> allow us to identify any operational ill-effects that this change >>>> has caused. We will monitor this mailing list for feedback, and I >>>> will also distribute any feedback sent to me personally so that it >>>> can be considered. >>>> If no harmful effects have been identified by 2010-03-21 the trust >>>> anchor for the ARPA zone will be published through the IANA ITAR at >>>> . >>>> Regards, >>>> Joe >>>> Begin forwarded message: >>>>> From: Joe Abley >>>>> Date: 10 March 2010 16:13:46 EST >>>>> To: Joe Abley >>>>> Subject: Signing of the ARPA zone >>>>> >>>>> Colleagues, >>>>> >>>>> This is a technical, operational announcement regarding changes to >>>>> the ARPA top-level domain. Apologies in advance for duplicates >>>>> received through different mailing lists. >>>>> >>>>> No specific action is requested of operators. This message is for >>>>> your information only. >>>>> >>>>> The ARPA zone is about to be signed using DNSSEC. The technical >>>>> parameters by which ARPA will be signed are as follows: >>>>> >>>>> KSK Algorithm and Size: 2048 bit RSA >>>>> KSK Rollover: every 2-5 years, scheduled rollover to follow RFC 5011 >>>>> KSK Signature Algorithm: SHA-256 >>>>> Validity period for signatures made with KSK: 15 days; new >>>>> signatures published every 10 days >>>>> ZSK Algorithm and Size: 1024 bit RSA >>>>> ZSK Rollover: every 3 months >>>>> ZSK Signature Algorithm: SHA-256 >>>>> Authenticated proof of non-existence: NSEC >>>>> Validity period for signatures made with ZSK: 7 days; zone >>>>> generated and re-signed twice per day >>>>> >>>>> The twelve root server operators [1] will begin to serve a signed >>>>> ARPA zone instead of the (current) unsigned ARPA zone during a >>>>> maintenance window which will open at 2010-03-15 0001 UTC and >>>>> close at 2010-03-17 2359 UTC. Individual root server operators >>>>> will carry out their maintenance at times within that window >>>>> according to their own operational preference. >>>>> >>>>> The trust anchor for the ARPA zone will be published in the ITAR >>>>> [2], and in the root zone in the form of a DS record once the root >>>>> zone is signed. >>>>> >>>>> If you have any concerns or require further information, please >>>>> let me know. >>>>> >>>>> Regards, >>>>> >>>>> >>>>> Joe Abley >>>>> Director DNS Operations, ICANN >>>>> >>>>> [1] >>>>> [2] >>>> _______________________________________________ >>>> LACNOG mailing list >>>> LACNOG at lacnic.net >>>> https://mail.lacnic.net/mailman/listinfo/lacnog >>> _______________________________________________ >>> LACNOG mailing list >>> LACNOG at lacnic.net >>> https://mail.lacnic.net/mailman/listinfo/lacnog >> _______________________________________________ >> LACNOG mailing list >> LACNOG at lacnic.net >> https://mail.lacnic.net/mailman/listinfo/lacnog > > _________________________________________________________________ > Prefiero un d?a sin coche que sin Messenger > www.vivirmessenger.com > > > ------------------------------------------------------------------------ > > _______________________________________________ > LACNOG mailing list > LACNOG at lacnic.net > https://mail.lacnic.net/mailman/listinfo/lacnog From gfortaine at live.com Tue Mar 30 10:58:57 2010 From: gfortaine at live.com (Guillaume FORTAINE) Date: Tue, 30 Mar 2010 15:58:57 +0200 Subject: [lacnog] Useful URL for network operators Message-ID: Misses, Misters, FYI : http://tools.bgp4.jp/index.php?tools%20team/tools Best Regards, Guillaume FORTAINE From jmamodio at gmail.com Tue Mar 30 14:30:59 2010 From: jmamodio at gmail.com (Jorge Amodio) Date: Tue, 30 Mar 2010 12:30:59 -0500 Subject: [lacnog] Useful URL for network operators In-Reply-To: References: Message-ID: <202705b1003301030w7b287754r490417c766f8623c@mail.gmail.com> [troll alert] Les recomendaria que revisen otras listas donde este personaje ha estado enviando mensajes inutiles, recientemente cambio su direccion de correo electronico para evitar ser filtrado. Atentos Saludos Jorge On Tue, Mar 30, 2010 at 8:58 AM, Guillaume FORTAINE wrote: > Misses, Misters, > > FYI : > > http://tools.bgp4.jp/index.php?tools%20team/tools > > Best Regards, > > Guillaume FORTAINE From gfortaine at live.com Tue Mar 30 14:55:20 2010 From: gfortaine at live.com (Guillaume FORTAINE) Date: Tue, 30 Mar 2010 19:55:20 +0200 Subject: [lacnog] Useful URL for network operators In-Reply-To: <202705b1003301030w7b287754r490417c766f8623c@mail.gmail.com> References: <202705b1003301030w7b287754r490417c766f8623c@mail.gmail.com> Message-ID: Hola, Por favor, ignore Jorge Amodio. Nunca he o?do hablar de ?l. Saludos cordiales, Guillaume FORTAINE On 03/30/2010 07:30 PM, Jorge Amodio wrote: > [troll alert] > > Les recomendaria que revisen otras listas donde este personaje ha > estado enviando mensajes inutiles, recientemente cambio su direccion > de correo electronico para evitar ser filtrado. > > Atentos Saludos > Jorge > > On Tue, Mar 30, 2010 at 8:58 AM, Guillaume FORTAINE wrote: > >> Misses, Misters, >> >> FYI : >> >> http://tools.bgp4.jp/index.php?tools%20team/tools >> >> Best Regards, >> >> Guillaume FORTAINE >> > _______________________________________________ > LACNOG mailing list > LACNOG at lacnic.net > https://mail.lacnic.net/mailman/listinfo/lacnog > > >