Multi-Signer DNSSEC at APNIC Blog
APNIC published my article on Multi-Signer DNSSEC Models today on their blog.
I plan to publish a follow-up article on how to employ Multi-Signer DNSSEC methods to non-disruptively transfer a signed zone across DNS operators, and how that process can be automated. This will elaborate on the protocol mechanism described in the following IETF draft with my co-author, Ulrich Wisser of the Swedish Internet Foundation: DNSSEC Automation.