[ldns-users] Configuring a trust anchor in ldns ?
svallet at genoscope.cns.fr
Fri May 4 16:52:33 CEST 2007
trying to implement a quick-and-dirty signature verification, I
stumbled on the issue of trust anchor configuration -- this is what I'm
-> fetch the RR I need
-> fetch the corresponding DNSKEY
-> call ldns_verify()
The key in question is a ZSK, which is signed by a domain-wide KSK. Now
since global DNSSEC deployment will probably take a while, I'd like to
configure this KSK as a trust anchor in ldns.
I see entries for TSIG keys in the ldns_struct_resolver struct, but not
any for trust anchors. Is there a reason for this ?
More information about the ldns-users