To use TSIG keys to secure zone transfers between the primary and secondary servers in the BlueCat Cloud DNS environment, customers must contact BlueCat Customer Care. BlueCat Customer Care will generate TSIG keys with the cloud DNS provider and securely deliver them to the customer to manually add into Address Manager. For more information on manually adding TSIG keys to Address Manager, refer to Adding a TSIG key.
The following TSIG key algorithms are supported for securing the cloud DNS service:
Algorithm | Key Length |
---|---|
hmac-sha512 | 512 bits |
hmac-sha256 | 512 bits |
hmac-sha1 | 512 bits |