RCS file: /var/opendnssec/unsigned/RCS/cacert.net,v Working file: /var/opendnssec/unsigned/cacert.net head: 1.27 branch: locks: strict access list: symbolic names: keyword substitution: kv total revisions: 27; selected revisions: 27 description: cacert.net - DNS master zone file for cacert.net, under RCS control ---------------------------- revision 1.27 date: 2019/10/18 08:23:30; author: root; state: Exp; lines: +2 -5 Drop all records for ns5.cacert.net since ISC will be ending the secondary name service on January 31, 2020. ---------------------------- revision 1.26 date: 2019/06/06 08:41:38; author: root; state: Exp; lines: +3 -6 Drop ns4.cacert.org secondary server. Re-enable IPv6 address for ns3.cacert.net. ---------------------------- revision 1.25 date: 2018/05/02 12:48:09; author: root; state: Exp; lines: +3 -3 Update CAA record to contain a valid mailto: URL. ---------------------------- revision 1.24 date: 2017/09/29 13:36:39; author: root; state: Exp; lines: +6 -2 Add CAA records. ---------------------------- revision 1.23 date: 2016/10/12 07:18:06; author: root; state: Exp; lines: +4 -4 Set TTL for SOA to 1 hour, and SOA expire time to 7 days, per web recommendations. ---------------------------- revision 1.22 date: 2016/07/16 14:42:49; author: root; state: Exp; lines: +2 -2 Update serial number to force OpenDNSSEC 2.0.0-1 to use a higher serial number. ---------------------------- revision 1.21 date: 2015/10/26 14:49:58; author: root; state: Exp; lines: +3 -3 Disable IPv6 address for ns3, because this host is currently lacking IPv6 connectivity. ---------------------------- revision 1.20 date: 2014/09/17 14:37:45; author: root; state: Exp; lines: +4 -4 Update IPv4 and IPv6 addresses for ns4.cacert.org (ns-ext.nlnetlabs.nl). ---------------------------- revision 1.19 date: 2014/06/11 09:15:32; author: root; state: Exp; lines: +3 -2 Add IPv6 address for ns1.cacert.net. ---------------------------- revision 1.18 date: 2013/06/01 08:55:22; author: root; state: Exp; lines: +4 -4 Update A and AAAA records for ns3 after server migration of mars.overmeer.net. ---------------------------- revision 1.17 date: 2013/03/17 10:19:32; author: root; state: Exp; lines: +2 -5 Drop nameserver ns2 because it will be taken out of service soon. A corresponding change has already been made in the GKG.NET registry. ---------------------------- revision 1.16 date: 2012/04/17 07:07:02; author: root; state: Exp; lines: +3 -3 Reduce SOA expiration timer from 1 week to 2 days, in order to comply with a recommendation made in RFC 4641bis: the SOA expiration timer should be between 1/4th and 1/3ed of the size of the signature validity period (1 week). ---------------------------- revision 1.15 date: 2011/07/14 15:30:42; author: root; state: Exp; lines: +3 -2 Add IPv6 address for ns3 (per e-mail from Mark Overmeer on July 7, 2011). ---------------------------- revision 1.14 date: 2011/01/24 16:13:31; author: root; state: Exp; lines: +2 -4 Drop dlv TXT RR for validation by dlv.isc.org, because we don't use dlv anymore for this zone, its DS record has been uploaded to the registry. ---------------------------- revision 1.13 date: 2010/12/09 13:06:27; author: root; state: Exp; lines: +5 -2 Add A and AAAA records for ns5.cacert.net (sns-pb.isc.org) and enable an NS record for it. ---------------------------- revision 1.12 date: 2010/10/27 14:55:25; author: root; state: Exp; lines: +3 -2 Enable NS record for ns4. ---------------------------- revision 1.11 date: 2010/10/21 09:55:49; author: root; state: Exp; lines: +4 -2 Add A and AAAA records for ns4.cacert.net (ns-ext.nlnetlabs.nl). ---------------------------- revision 1.10 date: 2010/10/07 14:30:28; author: root; state: Exp; lines: +3 -2 Add IPv6 address for ns2.cacert.org. ---------------------------- revision 1.9 date: 2010/09/15 15:07:39; author: root; state: Exp; lines: +3 -3 Increase SOA refresh time from 2 hours to 4 hours. ---------------------------- revision 1.8 date: 2010/08/27 15:44:02; author: root; state: Exp; lines: +4 -2 Add dlv TXT RR for validation by dlv.isc.org. ---------------------------- revision 1.7 date: 2010/06/25 12:29:50; author: root; state: Exp; lines: +2 -2 Just bump up the serial number to check propagation of changes to slaves. ---------------------------- revision 1.6 date: 2010/06/22 12:49:01; author: root; state: Exp; lines: +3 -4 Switch ns1 to official CAcert-hosted name server at ns.cacert.org. ---------------------------- revision 1.5 date: 2010/01/08 14:23:48; author: root; state: Exp; lines: +4 -8 Switch completely to new name servers: ns[123].cacert.net. Update MX record to point to email.cacert.org -- needs checking! ---------------------------- revision 1.4 date: 2010/01/06 14:34:36; author: root; state: Exp; lines: +6 -4 Add ns3.cacert.net (mars.overmeer.net). Add missing . in NS records for ns?.cacert.net. ---------------------------- revision 1.3 date: 2010/01/06 11:04:48; author: root; state: Exp; lines: +6 -3 Add ns2.cacert.net (newsys.gun.de). Document IP numbers of name servers used. ---------------------------- revision 1.2 date: 2010/01/05 15:54:56; author: root; state: Exp; lines: +4 -2 Add A and AAAA for ns1.cacert.net. ---------------------------- revision 1.1 date: 2010/01/04 15:45:10; author: root; state: Exp; Initial revision =============================================================================