Skip to content

Commit

Permalink
updated
Browse files Browse the repository at this point in the history
  • Loading branch information
gbicann committed Sep 4, 2024
1 parent 6a905c9 commit f494d58
Showing 1 changed file with 4 additions and 4 deletions.
8 changes: 4 additions & 4 deletions inc/dnssec-ops/cases.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -30,7 +30,7 @@ dnssecOps01-ZSKRollover:
During the test period (currently defined as 48 hours) the operator
**MUST** successfully carry out a ZSK rollover for the domain, where the
Zone Signing Key is replaced, without disrupting the chain of trust.
The original ZSK **MUST** additionally be unpublished (removed from the
zone) before the end of the test period.
Expand All @@ -46,7 +46,7 @@ dnssecOps01-ZSKRollover:
- DNSSEC_OPS_ZONE_IS_INVALID
- DNSSEC_OPS_ZSK_ROLLOVER_CHAIN_OF_TRUST_BROKEN
- DNSSEC_OPS_ZSK_ROLLOVER_NOT_COMPLETED

dnssecOps02-KSKRollover:
Summary: KSK rollover
Maturity: GAMMA
Expand Down Expand Up @@ -82,7 +82,7 @@ dnssecOps02-KSKRollover:
parent zone before the end of the test period.
To simplify testing, applicants may wish to use a subdomain of
an existing DNSSEC-signed zone under their control, so that completion of
an existing DNSSEC-signed zone under their control, so that completion of
the test is not dependent on interaction with a third party.
Input-Parameters:
- dnssecOps.kskRolloverZone
Expand Down Expand Up @@ -137,7 +137,7 @@ dnssecOps03-AlgorithmRollover:
accepted as well as a rollover from `RSASHA256` to `ECDSAP256SHA256`.
To simplify testing, applicants may wish to use a subdomain of
an existing DNSSEC-signed zone under their control, so that completion of
an existing DNSSEC-signed zone under their control, so that completion of
the test is not dependent on interaction with a third party.
Input-Parameters:
- dnssecOps.algorithmRolloverZone
Expand Down

0 comments on commit f494d58

Please sign in to comment.