DNSSEC-Provisioning / DNSSEC-Provisioning/music

Logic to support optionally keeping or removing the CDS/CDNSKEY RRs on the signers.

Open
#214 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
Go
Stars
6
Forks
5
PR merge metrics
No merged PRs in 30d

Description

Currently the CDS/CDNSKEY RRs are removed from the signers in the signergroup once the DS records at the parent are synced and verified.

- [ ] Decide if we should keep this logic, this entails a prerequisite that the signers do not inject CDS/CDSNSKEY RRs themselves and that MUSIC is the only entity handling these records.
- [ ] If we want to allow the signers to handle the CDS/CDNSKEY RRs as well we need logic in MUSIC to deal with thisl.

Contributor guide

No contributing guide indexed for this repository

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.