Configuring a DNSSEC validating server - BlueCat Integrity - 9.5.0

Address Manager Administration Guide

Product name
BlueCat Integrity

This section describes how to create a DNSSEC validating server using DNS deployment options in Address Manager. You can configure a DNSSEC validating server to support either the trusted signed root zone or delegated zones lower in the DNS namespace.

Note: The DNSSEC Enable DNS Deployment Option (dnssec-enable) is no longer required as the option has been obsolted and no longer has any effect. DNSSEC responses are always enabled if signatures and other DNSSEC data are present.