OpenBSD
1.18K subscribers
38 photos
2 videos
6 files
405 links
加入频道
OpenBSD: Manage DNS, DNSSEC (to automate TLSA records).

My DNS service run since 4 years, under OpenBSD native tool named nsd. I manage DNSSEC with ldns tools, a package into ports. In the facts, I use ldnscript tool to create all needed keys and manage DNSSEC. Starting Juin 2022, I decided to switch from RSA to use ECDSA. Before going any further in this direction, let’s move on to the installation of the necessary prerequisites necessary...

https://doc.huc.fr.eu.org/en/post/openbsd-nsd-dnssec-tlsa/

#dns #dnssec
👍4😱1