In bind, the NSEC3PARAM has a TTL of 0. In opendnssec, it gets the default ttl, in my case 3600.
Since this record is kind of special, I think I agree with bind that we should not store it in any caches anywhere, and so a TTL=0 seems to be the right value.
- clones
-
OPENDNSSEC-330 NSEC3PARAM TTL should be set to zero
-
- Closed
-
- is cloned by
-
OPENDNSSEC-447 CLONE - NSEC3PARAM TTL should be set to zero
-
- Closed
-