Markdown Version | Session Recording

Session Date/Time: 17 Feb 2025 15:00

DNSOP

Summary

This inter-meeting session presented an integrated architecture for distributed DNSSEC multi-signer operations and automated delegation management. The discussion covered the evolution of several related drafts, new EDNS options for state management, and a proposed HSYNC record type for horizontal synchronization between DNS providers. Key themes included automating critical configuration across organizational boundaries and defining a distributed multi-signer agent (MSA) architecture to manage zone delegation and signing, minimizing the zone owner's operational burden. The presenters also highlighted open questions regarding the role of DNS vs. APIs, signer requirements, and authorization models.

Key Discussion Points

Next Steps