dnsext-11----Page:6
1  2  3  4  5  6  7  8  9  10 

Changes to be made 01->02 Draft
Based on comments on list and implementer feedback:
Specify error code for “signature too weak” to be the same as missing signature.
Specify that truncated signature value in request is used in calculating signature for reply.
State that policies SHOULD accept longer signatures than they require and SHOULD reply with a signature at least as long as that in the corresponding query.
Say a little more about recent hash function breaks.
PPT Version