-
Type:
New Feature
-
Status: Open
-
Priority:
Minor
-
Resolution: Unresolved
-
Affects Version/s: OpenDNSSEC 2.1
-
Fix Version/s: None
-
Component/s: PKCS#11 Interface, Signer
-
Labels:None
RFC 8080 describes the use of EdDSA keys and signatures in DNSSEC. At the moment there is a standardization effort at OASIS to add EdDSA to PKCS #11. Several authoritative DNS server software already supports EdDSA. So it would make sense to support EdDSA in OpenDNSSEC once it has been added to PKCS #11.