[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Dents v0.0.3 - DNS server



At 18:16 -0600 1999-05-09, Bdale Garbee wrote:
In article <m10aT1V-000anXC@finlandia.Infodrom.North.DE> you wrote:
I wonder if s/o is already working on this or if it doesn't make sense
to package it.

Given the BIND package will move to non-free in version 8.2 due to the license
on the RSA code used for DNSSEC, it's good to see an alternative that will be
in main... even if it's less functional.

The glibc upstream had a discussion awhile back regarding intregrating bind 8.2's libresolv.
There were two issues, firstly, the DNSSAFE license, secondly, RSA itself.

RFC 2535 makes DSA mandatory, and only "recommends" RSA/MD5.

3.2 The KEY Algorithm Number Specification
...
   Algorithm specific formats and procedures are given in separate
   documents.  The mandatory to implement for interoperability algorithm
   is number 3, DSA.  It is recommended that the RSA/MD5 algorithm,
   number 1, also be implemented.  Algorithm 2 is used to indicate
   Diffie-Hellman keys and algorithm 4 is reserved for elliptic curve.

It was planned to use a free implementation of DSA and not bother to implement RSA until the patent expires.
--
Joel Klecker (aka Espy)                    Debian GNU/Linux Developer
<URL:mailto:jk@espy.org>                 <URL:mailto:espy@debian.org>
<URL:http://web.espy.org/>               <URL:http://www.debian.org/>


Reply to: