0

The situation basically is: The BIND servers that are authoritative for a domain crashed and are utilizing DNSSEC (Ie; I can't change the DNS entries for the zone), is it enough to have the registrar remove the DS entries and then setup the zone in a new name server that does not have DNSSEC enabled? Obviously, I have to wait out the TTL expiration for the registrar entries to expire before cutting to a new nameserver, but I wasn't sure if there are any major gotchas by just having the registrar do their part and hard cutting to a new, non-DNSSEC zone on a new nameserver.

Thanks in advance for all the help!

1
  • why do you not fix the issue with the bind service?
    – djdomi
    Nov 7 at 19:06

0

You must log in to answer this question.

Browse other questions tagged .