Root Zone DNSSEC Deployment Technical Status Update

Root Zone DNSSEC Deployment
Technical Status Update 2010-06-09

This is the eighth of a series of technical status updates intended
to inform a technical audience on progress in signing the root zone
of the DNS.


Details of the project, including documentation published to date,
can be found at <>.

We'd like to hear from you. If you have feedback for us, please
send it to


The US Department of Commerce National Telecommunications and
Information Administration (NTIA) has issued a Public Notice regarding
the deployment of DNSSEC in the root zone.

The Public Notice makes reference to the final report submitted to
NTIA by ICANN and VeriSign which contains a summary of the project
work to date together with a recommendation that full deployment
should proceed.

The Public Notice includes a public review period. Comments may be
submitted by postal mail, fax or e-mail before 2010-06-21. Instructions
for the submission of comments are included in the Public Notice.


Already completed:

  2010-01-27: L starts to serve DURZ

  2010-02-10: A starts to serve DURZ

  2010-03-03: M, I start to serve DURZ

  2010-03-24: D, K, E start to serve DURZ

  2010-04-14: B, H, C, G, F start to serve DURZ

  2010-05-05: J starts to serve DURZ

To come:

  2010-06-16: First Key Signing Key (KSK) Ceremony

  2010-07-15: Distribution of validatable, production, signed root
    zone; publication of root zone trust anchor

  (Please note that this schedule is tentative and subject to change
  based on testing results or other unforeseen factors.)