You are here: Home > Participate > Policy Development > Policy Proposals > Introducing DNSSEC Service to Reverse DNS Trees

This policy proposal has been accepted

Introducing DNSSEC Service to Reverse DNS Trees

It is possible to secure delegations from the RIPE NCC under the Policy for Reverse Address Delegation of IPv4 and IPv6 Address Space in the RIPE NCC Service Region.

Our operational staff will deploy DNSSEC zone by zone. We will only exchange keys when parent domains are being signed. This will keep information current.

Key exchange between parent and child is based on the same authorisation and authentication mechanisms as the exchange of nameserver delegation information.

We will sign any announcements about secured DNS, such as changes in RIPE NCC procedures, with our PGP key. We will publish procedures and announcements on our secure website and also post these to an announcement mailing list.

Get Involved

The Domain Name System (DNS) Working Group discusses current DNS-related issues in technology and operations. The WG encourages deployment of DNS and related protocol components by collecting experience and documenting current practice and recommendations. Anyone with an interest in DNS is welcome to observe and contribute to the WG. To post a message to the list, send an email to dns-w[email protected]. Please note that only subscribers can post messages.

RIPE Forum

The RIPE Forum is an additional way to participate in RIPE community mailing list discussions using a web-based interface rather than an email client.

Check out the forum

Please contact if you need more information.

Stay up to date!

Follow @PDO_RIPE_NCC on Twitter.