-
Notifications
You must be signed in to change notification settings - Fork 64
Open
Description
Under the DSNSEC tab there is still a SHA-1 DS record listed when enabling DNSSEC.
SHA-1 is still widely used for Delegation Signer (DS) records, so validators MUST implement validation, but it MUST NOT be used to generate new DS and CDS records
https://datatracker.ietf.org/doc/html/rfc8624#section-3.2
Metadata
Metadata
Assignees
Labels
No labels