CINXE.COM
Duane Wessels on CircleID
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en"> <head> <title>Duane Wessels on CircleID</title> <meta name="description" content="Profile page of Duane Wessels on CircleID" /> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <link rel="alternate" type="application/rss+xml" title="Feed for Duane Wessels" href="https://circleid.com/rss/members/3397" /> <link rel="shortcut icon" type="image/ico" href="/favicon.ico" /> <link rel="stylesheet" type="text/css" media="all" href="/css/base.css" /> <link rel="stylesheet" type="text/css" media="all" href="/css/posts.css" /> <link rel="stylesheet" type="text/css" media="all" href="/css/members.css" /> <script src="https://ajax.googleapis.com/ajax/libs/jquery/3.2.1/jquery.min.js"></script> <link href="https://fonts.googleapis.com/css2?family=PT+Serif:ital,wght@0,400;0,700;1,400;1,700&family=Roboto+Condensed:wght@400;700&family=Roboto+Mono:wght@300;400;700&family=Roboto:ital,wght@0,400;0,500;0,700;0,900;1,400;1,700&display=swap" rel="stylesheet"> <script type="text/javascript" src="/js/jq.clickmenu/jq.clickmenu.min.js"></script> <script type="text/javascript" src="/js/jq.scrollable/scrollable.min.js"></script> <script async src="https://cse.google.com/cse.js?cx=003374819184044847448:yb5rk7pq36s"></script> <!-- font awesome --> <script defer src="/fontawesome-free-6.6.0-web/js/brands.js"></script> <script defer src="/fontawesome-free-6.6.0-web/js/solid.js"></script> <script defer src="/fontawesome-free-6.6.0-web/js/fontawesome.js"></script> <div id="fb-root"></div> <script>(function (d, s, id) { var js, fjs = d.getElementsByTagName(s)[0]; if (d.getElementById(id)) return; js = d.createElement(s); js.id = id; js.src = "//connect.facebook.net/en_US/sdk.js#xfbml=1&version=v2.5"; fjs.parentNode.insertBefore(js, fjs); }(document, 'script', 'facebook-jssdk'));</script> <script type="text/javascript"> $(document).ready(function() { $('.showHideBox').hide(); $('a#clickToggle').click(function() { $('.showHideBox').toggle(); $(this).toggleClass("toggle-show"); $(this).toggleClass("toggle-hide"); return false; }); }); </script> <!-- GA code --> <script> (function(i,s,o,g,r,a,m){i['GoogleAnalyticsObject']=r;i[r]=i[r]||function(){ (i[r].q=i[r].q||[]).push(arguments)},i[r].l=1*new Date();a=s.createElement(o), m=s.getElementsByTagName(o)[0];a.async=1;a.src=g;m.parentNode.insertBefore(a,m) })(window,document,'script','https://www.google-analytics.com/analytics.js','ga'); ga('create', 'UA-85374710-1', 'auto'); ga('send', 'pageview'); </script> </head> <body> <div id="header"> <a href="/"><img class="headerLogo" src="/images/circleid.svg" border="0"/></a> <div class="headerLinks"> <span> Welcome: <a href="https://circleid.com/account/login">Login</a> | <a href="https://circleid.com/account/signup">Sign Up</a> | <a href="https://circleid.com/about">About CircleID</a> </span> <span> Follow: <a href="https://x.com/circleid" class="socialIcon"><i class="fa-brands fa-square-x-twitter"></i></a> | <a href="https://www.facebook.com/circleid/" class="socialIcon"><i class="fa-brands fa-square-facebook"></i></a> | <a href="https://www.linkedin.com/company/circleid" class="socialIcon"><i class="fa-brands fa-linkedin"></i></a> | <a href="http://feeds.circleid.com/cid_master/" class="socialIcon"><i class="fas fa-rss-square"></i></a> </span> </div> <div class="clear"></div> </div> <noscript> <div id="headerAlert"> WARNING: JavaScript is either disabled or not supported by your browser. You may encounter problems using various features on CircleID. </div> </noscript> <div id="headerNav"> <div id="headerNavContent"> <div id="headerNavMenu"> <ul> <li ><span class="head_menu"><a href="/">Home</a></span></li> <li> <span class="head_menu"><a href="https://circleid.com/topics">Topics</a><img src="/js/jq.clickmenu/arrow.gif" class="arrow" /></span> <div class="subMenu" style="width:480px;"> <table border="0" cellpadding="0" cellspacing="0"> <tr> <td> <a href="https://circleid.com/topics/access_providers">Access Providers</a> <a href="https://circleid.com/topics/artificial-intelligence">Artificial Intelligence</a> <a href="https://circleid.com/topics/blockchain">Blockchain</a> <a href="https://circleid.com/topics/brand_protection">Brand Protection</a> <a href="https://circleid.com/topics/broadband">Broadband</a> <a href="https://circleid.com/topics/censorship">Censorship</a> <a href="https://circleid.com/topics/cloud_computing">Cloud Computing</a> <a href="https://circleid.com/topics/cyberattack">Cyberattack</a> <a href="https://circleid.com/topics/cybercrime">Cybercrime</a> <a href="https://circleid.com/topics/cybersecurity">Cybersecurity</a> <a href="https://circleid.com/topics/data_center">Data Center</a> <a href="https://circleid.com/topics/ddos_attack">DDoS Attack</a> <a href="https://circleid.com/topics/dns">DNS</a> <a href="https://circleid.com/topics/dns-security">DNS Security</a> <a href="https://circleid.com/topics/domain-management">Domain Management</a> <a href="https://circleid.com/topics/domain_names">Domain Names</a> <a href="https://circleid.com/topics/email">Email</a> <a href="https://circleid.com/topics/enum">Enum</a> <a href="https://circleid.com/topics/gaming">Gaming</a> <a href="https://circleid.com/topics/icann">ICANN</a> <a href="https://circleid.com/topics/internet_governance">Internet Governance</a> <a href="https://circleid.com/topics/internet_of_things">Internet of Things</a> <a href="https://circleid.com/topics/internet_protocol">Internet Protocol</a> <a href="https://circleid.com/topics/ipv4-markets">IPv4 Markets</a> </td> <td style="border-left:1px solid #d5d5d5;border-right:1px solid #d5d5d5;padding:0 4px;"> <a href="https://circleid.com/topics/iptv">IPTV</a> <a href="https://circleid.com/topics/ipv6-transition">IPv6 Transition</a> <a href="https://circleid.com/topics/law">Law</a> <a href="https://circleid.com/topics/malware">Malware</a> <a href="https://circleid.com/topics/mobile_internet">Mobile Internet</a> <a href="https://circleid.com/topics/multilinguism">Multilinguism</a> <a href="https://circleid.com/topics/net_neutrality">Net Neutrality</a> <a href="https://circleid.com/topics/networks">Networks</a> <a href="https://circleid.com/topics/new_tlds">New TLDs</a> <a href="https://circleid.com/topics/p2p">P2P</a> <a href="https://circleid.com/topics/policy_regulation">Policy & Regulation</a> <a href="https://circleid.com/topics/privacy">Privacy</a> <a href="https://circleid.com/topics/regional_registries">Regional Registries</a> <a href="https://circleid.com/topics/registry_services">Registry Services</a> <a href="https://circleid.com/topics/satellite-internet">Satellite Internet</a> <a href="https://circleid.com/topics/spam">Spam</a> <a href="https://circleid.com/topics/telecom">Telecom</a> <a href="https://circleid.com/topics/udrp">UDRP</a> <a href="https://circleid.com/topics/voip">VoIP</a> <a href="https://circleid.com/topics/vpn">VPN</a> <a href="https://circleid.com/topics/web">Web</a> <a href="https://circleid.com/topics/white_space">White Space</a> <a href="https://circleid.com/topics/whois">Whois</a> <a href="https://circleid.com/topics/wireless">Wireless</a> </td> <td style="padding:0 0 0 4px;"> <div class="itemTitle">Display Options:</div> <a href="https://circleid.com/topics">List by Popularity</a> <a href="https://circleid.com/topics/chart">Chart by Popularity</a> </td> </tr> </table> </div> </li> <li> <span class="head_menu"><a href="https://circleid.com/blogs">Blogs</a><img src="/js/jq.clickmenu/arrow.gif" class="arrow" /></span> <div class="subMenu"> <a href="https://circleid.com/blogs">Latest</a> <a href="https://circleid.com/blogs/recently_discussed">Recently Discussed</a> <a href="https://circleid.com/blogs/most_discussed">Most Discussed</a> <a href="https://circleid.com/blogs/most_viewed">Most Viewed</a> </div> </li> <li> <span class="head_menu"><a href="https://circleid.com/news">News</a><img src="/js/jq.clickmenu/arrow.gif" class="arrow" /></span> <div class="subMenu"> <a href="https://circleid.com/news">Latest</a> <a href="https://circleid.com/news/recently_discussed">Recently Discussed</a> <a href="https://circleid.com/news/most_discussed">Most Discussed</a> <a href="https://circleid.com/news/most_viewed">Most Viewed</a> </div> </li> <li> <span class="head_menu"><a href="https://circleid.com/community">Community</a><img src="/js/jq.clickmenu/arrow.gif" class="arrow" /></span> <div class="subMenu"> <a href="https://circleid.com/community">Recently Featured</a> <a href="https://circleid.com/community/most_featured">Most Featured</a> <a href="https://circleid.com/community/most_active">Most Active</a> <a href="https://circleid.com/community/most_read">Most Read</a> <a href="https://circleid.com/community/recent_members">Recent Members</a> <a href="https://circleid.com/community/top_100" class="itemLine">Top 100 Leaderboard</a> <a href="https://circleid.com/community/alphabetical" class="itemLine">Alphabetical View</a> <a href="https://circleid.com/community/random">Random View</a> <a href="https://circleid.com/comments" class="itemLine">Recent Comments</a> </div> </li> <li> <span class="head_menu"><a href="https://circleid.com/industry">Industry</a><img src="/js/jq.clickmenu/arrow.gif" class="arrow" /></span> <div class="subMenu"> <a href="https://circleid.com/industry">Latest Posts</a> <a href="https://circleid.com/industry/most_viewed">Most Viewed</a> <a href="https://circleid.com/industry/leaderboard">Leaderboard</a> <a href="https://circleid.com/industry/members" class="itemLine"><strong>CircleID Members:</strong></a> <a href="/members/8495">CSC</a> <a href="/members/9196">Brand Registry Group</a> <a href="/members/9484">DNIB.com</a> <a href="/members/7855">i2Coalition</a> <a href="/members/1582">Godaddy Registry</a> <a href="/members/8076">Internet Commerce Association</a> <a href="/members/8622">IPv4.Global</a> <a href="/members/6851">Radix Registry</a> <a href="/members/8414">Threat Intelligence Platform (TIP)</a> <a href="/members/5593">Verisign</a> <a href="/members/8352">WhoisXML API</a> </div> </li> </ul> </div> <style> /* Search Box */ form.gsc-search-box { font-size: 14px; margin: 0 0 0 0; width: 100%; padding:0; } table.gsc-search-box td.gsc-input { padding:0 3px 5px 0; } /* Search input */ .gsc-input { font-size: 15px; } /* Search Button */ .gsc-search-button-v2 { font-size: 0; padding: 7px 12px; width: auto; vertical-align: middle; margin: -5px 0 0 0; } </style> <!-- search --> <div style="width:300px;float:right;margin: 0;padding: 0;"> <div class="gcse-searchbox-only"></div> </div> <!-- search --> <div class="clear"></div> </div> </div> <div id="headerSub"> <!-- MEMBER HEADER ///////////////////////////////////////////////////// --> <div id="headerProfile"> <!-- Photo or Logo --> <div class='memPhoto'> <a href="https://circleid.com/members/3397"><img src="/images/member_photos/photo_3397.jpg" width="80" border="0" alt="Duane Wessels" /></a> </div> <!-- Info --> <div class="memInfo"> <h3>Duane Wessels</h3> <p> <strong>Fellow at Verisign</strong><br /> Joined on July 16, 2008<br/> Total Post Views: 133,806 </p> <table class="btn-container"><tr><td class="btl"></td><td class="btr"></td></tr><tr><td class="bbl"></td><td class="bbr"><a href="#" class="toggle-show" id="clickToggle">About</a></td></tr></table> </div> <!-- Buttons --> <div class="buttons"> <!-- Message --> <table class="btn-container"> <tr><td class="btl"></td><td class="btr"></td></tr> <tr><td class="bbl"></td><td class="bbr"><a href="https://circleid.com/account/email_console/3397/" class="email">Send Message</a></td></tr> </table> <!-- RSS --> <table class="btn-container"> <tr><td class="btl"></td><td class="btr"></td></tr> <tr><td class="bbl"></td><td class="bbr"><a href="https://circleid.com/rss/members/3397" class="rss">RSS</a></td></tr> </table> </div> <div class="clear"></div> </div> <!-- MEMBER SUB HEADER ///////////////////////////////////////////////////// --> <div id="headerSubProfile" class="showHideBox"> <div id="bio"> <p>Duane Wessels, a fellow at Verisign, focuses on data analysis and Domain Name System Security Extension projects. He brings over 15 years of experience working in the data analysis and research fields.</p> <p>Prior to joining Verisign in 2010, Duane was the director of the Domain Name System Operations Analysis Research Center, where he developed tools and services, organized workshops, and recruited new members.</p> <p>Duane is an active participant in various Internet Corporation for Assigned Names and Numbers multi-stakeholder community groups, including the Root Server System Advisory Committee, the Root Zone Evolution Review Committee and the Root Server System Governance Working Group. Duane is also an active member of the Internet Engineering Task Force DNS Operations working group, the North American Network Operators’ Group, and DNS-OARC. He has also served on the board of directors for both NANOG and DNS-OARC, and has co-authored several internet Request for Comments.</p> <p>Duane holds a Master of Science in telecommunications from the University of Colorado and a Bachelor of Science in physics from Washington State University.</p> </div> <div id="links" class="pipedLinks"> <ul> <li><a href="https://www.verisign.com/" title="New window will open - https://www.verisign.com/" target="_blank">Company</a></li> </ul> </div> <p id="cc"> Except where otherwise noted, all postings by Duane Wessels on CircleID are licensed under a <a rel="license" href="http://creativecommons.org/licenses/ /2.5/" class="blue">Creative Commons License</a>. </p> </div> <!-- MEMBER SUB NAV ///////////////////////////////////////////////////// --> <div id="headerSubNav"> <ul> <li id="current"><a href="https://circleid.com/members/3397">Featured Blogs (11)</a></li> <li ><a href="https://circleid.com/members/3397/comments/">Comments (6)</a></li> </ul> <div class="clear"></div> </div> </div> <!-- MEMBER POSTS ///////////////////////////////////////////////////// --> <div class="container2c"> <div class="colWrapper"> <div class="colA"> <div class="colPad"> <h2>Featured Blogs</h2> <div class="postList" style="padding-bottom:30px;"> <h3 style="padding-top:0;margin-top:0;border:none;"><a href="https://circleid.com/posts/the-2024-2026-root-zone-ksk-rollover-initial-observations-and-early-trends">The 2024-2026 Root Zone KSK Rollover: Initial Observations and Early Trends</a></h3> <div class="byLine">Related Topics: <a href="/topics/dns" class="red">DNS</a>, <a href="/topics/dns-security" class="red">DNS Security</a>, <a href="/topics/icann" class="red">ICANN</a>,</div> <p> On Jan. 11, 2025, Verisign supported the Internet Corporation for Assigned Names and Numbers (ICANN) in taking a major step to ensure the continued security, stability, and resiliency of the Domain Name System (DNS). While imperceptible to most users, this action - specifically, the introduction of a new Domain Name System Security Extensions (DNSSEC) Key Signing Key (KSK) in the root zone - is the next step of a multi-year-long process to change, or "roll," the cryptographic key that secures the root of the DNS. <a href="https://circleid.com/posts/the-2024-2026-root-zone-ksk-rollover-initial-observations-and-early-trends" class="red"><span class="readmore">more</span></a> </p> <div class="postInfo pipedLinks"> <ul> <li>By <a href="https://circleid.com/members/3397" class="blue">Duane Wessels</a></li> <li>Mar 19, 2025</li> <li>Comments: 0</li> <li>Views: 7,805</li> </ul> </div> <h3><a href="https://circleid.com/posts/20230810-verisign-will-help-strengthen-security-with-dnssec-algorithm-update">Verisign Will Help Strengthen Security With DNSSEC Algorithm Update</a></h3> <div class="byLine">Related Topics: <a href="/topics/cybersecurity" class="red">Cybersecurity</a>, <a href="/topics/dns" class="red">DNS</a>, <a href="/topics/dns-security" class="red">DNS Security</a>, <a href="/topics/domain_names" class="red">Domain Names</a>, <a href="/topics/registry_services" class="red">Registry Services</a>,</div> <p> As part of Verisign's ongoing effort to make global internet infrastructure more secure, stable, and resilient, we will soon make an important technology update to how we protect the top-level domains (TLDs) we operate. The vast majority of internet users won't notice any difference, but the update will support enhanced security for several Verisign-operated TLDs and pave the way for broader adoption and the next era of Domain Name System (DNS) security measures. <a href="https://circleid.com/posts/20230810-verisign-will-help-strengthen-security-with-dnssec-algorithm-update" class="red"><span class="readmore">more</span></a> </p> <div class="postInfo pipedLinks"> <ul> <li>By <a href="https://circleid.com/members/3397" class="blue">Duane Wessels</a></li> <li>Aug 10, 2023</li> <li>Comments: 0</li> <li>Views: 19,547</li> </ul> </div> <h3><a href="https://circleid.com/posts/20230418-adding-zonemd-protections-to-the-root-zone">Adding ZONEMD Protections to the Root Zone</a></h3> <div class="byLine">Related Topics: <a href="/topics/dns" class="red">DNS</a>,</div> <p> The Domain Name System (DNS) root zone will soon be getting a new record type, called ZONEMD, to further ensure the security, stability, and resiliency of the global DNS in the face of emerging new approaches to DNS operation. While this change will be unnoticeable for the vast majority of DNS operators (such as registrars, internet service providers, and organizations), it provides a valuable additional layer of cryptographic security to ensure the reliability of root zone data. <a href="https://circleid.com/posts/20230418-adding-zonemd-protections-to-the-root-zone" class="red"><span class="readmore">more</span></a> </p> <div class="postInfo pipedLinks"> <ul> <li>By <a href="https://circleid.com/members/3397" class="blue">Duane Wessels</a></li> <li>Apr 18, 2023</li> <li>Comments: 0</li> <li>Views: 4,501</li> </ul> </div> <h3><a href="https://circleid.com/posts/20230301-verisigns-role-in-securing-the-dns-through-key-signing-ceremonies">Verisign’s Role in Securing the DNS Through Key Signing Ceremonies</a></h3> <div class="byLine">Related Topics: <a href="/topics/dns" class="red">DNS</a>, <a href="/topics/dns-security" class="red">DNS Security</a>, <a href="/topics/icann" class="red">ICANN</a>, <a href="/topics/registry_services" class="red">Registry Services</a>,</div> <p> Every few months, an important ceremony takes place. It's not splashed all over the news, and it's not attended by global dignitaries. It goes unnoticed by many, but its effects are felt across the globe. This ceremony helps make the internet more secure for billions of people. This unique ceremony began in 2010 when Verisign, ICANN and the U.S. Department of Commerce's National Telecommunications and Information Administration collaborated... <a href="https://circleid.com/posts/20230301-verisigns-role-in-securing-the-dns-through-key-signing-ceremonies" class="red"><span class="readmore">more</span></a> </p> <div class="postInfo pipedLinks"> <ul> <li>By <a href="https://circleid.com/members/3397" class="blue">Duane Wessels</a></li> <li>Mar 01, 2023</li> <li>Comments: 0</li> <li>Views: 8,444</li> </ul> </div> <h3><a href="https://circleid.com/posts/20220602-more-mysterious-dns-root-query-traffic-from-a-large-cloud-dns-operator">More Mysterious DNS Root Query Traffic from a Large Cloud/DNS Operator</a></h3> <div class="byLine">Related Topics: <a href="/topics/dns" class="red">DNS</a>, <a href="/topics/dns-security" class="red">DNS Security</a>,</div> <p> With so much traffic on the global internet day after day, it's not always easy to spot the occasional irregularity. After all, there are numerous layers of complexity that go into the serving of webpages, with multiple companies, agencies and organizations each playing a role. That's why when something does catch our attention, it's important that the various entities work together to explore the cause and, more importantly... <a href="https://circleid.com/posts/20220602-more-mysterious-dns-root-query-traffic-from-a-large-cloud-dns-operator" class="red"><span class="readmore">more</span></a> </p> <div class="postInfo pipedLinks"> <ul> <li>By <a href="https://circleid.com/members/3397" class="blue">Duane Wessels</a></li> <li>Jun 02, 2022</li> <li>Comments: 0</li> <li>Views: 10,552</li> </ul> </div> <h3><a href="https://circleid.com/posts/20190326_unexpected_effects_of_the_2018_root_zone_ksk_rollover">Unexpected Effects of the 2018 Root Zone KSK Rollover</a></h3> <div class="byLine">Related Topics: <a href="/topics/cybersecurity" class="red">Cybersecurity</a>, <a href="/topics/dns" class="red">DNS</a>, <a href="/topics/dns-security" class="red">DNS Security</a>, <a href="/topics/threat-intelligence" class="red">Threat Intelligence</a>,</div> <p> March 22, 2019, saw the completion of the final important step in the Key Signing Key (KSK) rollover - a process which began about a year and half ago. What may be less well known is that post rollover, and until just a couple days ago, Verisign was receiving a dramatically increasing number of root DNSKEY queries, to the tune of 75 times higher than previously observed, and accounting for ~7 percent of all transactions at the root servers we operate. <a href="https://circleid.com/posts/20190326_unexpected_effects_of_the_2018_root_zone_ksk_rollover" class="red"><span class="readmore">more</span></a> </p> <div class="postInfo pipedLinks"> <ul> <li>By <a href="https://circleid.com/members/3397" class="blue">Duane Wessels</a></li> <li>Mar 26, 2019</li> <li>Comments: 0</li> <li>Views: 11,284</li> </ul> </div> <h3><a href="https://circleid.com/posts/20170929_a_closer_look_at_postponing_of_root_zone_ksk_rollover_decision">A Closer Look at Postponing of the Root Zone KSK Rollover Decision</a></h3> <div class="byLine">Related Topics: <a href="/topics/cybersecurity" class="red">Cybersecurity</a>, <a href="/topics/dns" class="red">DNS</a>, <a href="/topics/dns-security" class="red">DNS Security</a>, <a href="/topics/icann" class="red">ICANN</a>, <a href="/topics/threat-intelligence" class="red">Threat Intelligence</a>,</div> <p> On Sept. 27, Internet Corporation for Assigned Names and Numbers (ICANN) announced that the first root zone Key Signing Key (KSK) rollover - originally scheduled to take place on Oct. 11 - will be postponed. Although this was certainly a difficult decision, we fully agree that erring on the side of caution is the best approach to take. In this blog post, I want to explain some of the involvement Verisign has had in KSK rollover preparations, as well as some of the recently available research opportunities which generated data that we shared with ICANN related to this decision. <a href="https://circleid.com/posts/20170929_a_closer_look_at_postponing_of_root_zone_ksk_rollover_decision" class="red"><span class="readmore">more</span></a> </p> <div class="postInfo pipedLinks"> <ul> <li>By <a href="https://circleid.com/members/3397" class="blue">Duane Wessels</a></li> <li>Sep 30, 2017</li> <li>Comments: 0</li> <li>Views: 13,341</li> </ul> </div> <h3><a href="https://circleid.com/posts/20161014_great_collaborative_effort_increasing_strength_of_zone_signing_key">A Great Collaborative Effort: Increasing the Strength of the Zone Signing Key for the Root Zone</a></h3> <div class="byLine">Related Topics: <a href="/topics/cybersecurity" class="red">Cybersecurity</a>, <a href="/topics/dns" class="red">DNS</a>, <a href="/topics/dns-security" class="red">DNS Security</a>, <a href="/topics/threat-intelligence" class="red">Threat Intelligence</a>,</div> <p> A few weeks ago, on Oct. 1, 2016, Verisign successfully doubled the size of the cryptographic key that generates DNSSEC signatures for the internet's root zone. With this change, root zone DNS responses can be fully validated using 2048-bit RSA keys. This project involved work by numerous people within Verisign, as well as collaborations with ICANN, Internet Assigned Numbers Authority (IANA) and National Telecommunications and Information Administration (NTIA). <a href="https://circleid.com/posts/20161014_great_collaborative_effort_increasing_strength_of_zone_signing_key" class="red"><span class="readmore">more</span></a> </p> <div class="postInfo pipedLinks"> <ul> <li>By <a href="https://circleid.com/members/3397" class="blue">Duane Wessels</a></li> <li>Oct 14, 2016</li> <li>Comments: 0</li> <li>Views: 8,818</li> </ul> </div> <h3><a href="https://circleid.com/posts/20160928_increasing_strength_of_zone_signing_key_for_the_root_zone_part_2">Increasing the Strength of the Zone Signing Key for the Root Zone, Part 2</a></h3> <div class="byLine">Related Topics: <a href="/topics/cybersecurity" class="red">Cybersecurity</a>, <a href="/topics/dns" class="red">DNS</a>, <a href="/topics/dns-security" class="red">DNS Security</a>, <a href="/topics/threat-intelligence" class="red">Threat Intelligence</a>,</div> <p> A few months ago I published a blog post about Verisign's plans to increase the strength of the Zone Signing Key (ZSK) for the root zone. I'm pleased to provide this update that we have started the process to pre-publish a 2048-bit ZSK in the root zone for the first time on Sept. 20. Following that, we will publish root zones with the larger key on Oct. 1, 2016. <a href="https://circleid.com/posts/20160928_increasing_strength_of_zone_signing_key_for_the_root_zone_part_2" class="red"><span class="readmore">more</span></a> </p> <div class="postInfo pipedLinks"> <ul> <li>By <a href="https://circleid.com/members/3397" class="blue">Duane Wessels</a></li> <li>Sep 28, 2016</li> <li>Comments: 0</li> <li>Views: 10,032</li> </ul> </div> <h3><a href="https://circleid.com/posts/20160506_increasing_the_strength_of_the_zone_signing_key_for_the_root_zone">Increasing the Strength of the Zone Signing Key for the Root Zone</a></h3> <div class="byLine">Related Topics: <a href="/topics/cybersecurity" class="red">Cybersecurity</a>, <a href="/topics/dns" class="red">DNS</a>, <a href="/topics/dns-security" class="red">DNS Security</a>, <a href="/topics/threat-intelligence" class="red">Threat Intelligence</a>,</div> <p> One of the most interesting and important changes to the internet's domain name system (DNS) has been the introduction of the DNS Security Extensions (DNSSEC). These protocol extensions are designed to provide origin authentication for DNS data. In other words, when DNS data is digitally signed using DNSSEC, authenticity can be validated and any modifications detected. <a href="https://circleid.com/posts/20160506_increasing_the_strength_of_the_zone_signing_key_for_the_root_zone" class="red"><span class="readmore">more</span></a> </p> <div class="postInfo pipedLinks"> <ul> <li>By <a href="https://circleid.com/members/3397" class="blue">Duane Wessels</a></li> <li>May 06, 2016</li> <li>Comments: 0</li> <li>Views: 19,400</li> </ul> </div> <h3><a href="https://circleid.com/posts/20151215_verisign_perspective_on_recent_root_server_attacks">Verisign’s Perspective on Recent Root Server Attacks</a></h3> <div class="byLine">Related Topics: <a href="/topics/cyberattack" class="red">Cyberattack</a>, <a href="/topics/cybersecurity" class="red">Cybersecurity</a>, <a href="/topics/ddos_attack" class="red">DDoS Attack</a>, <a href="/topics/dns" class="red">DNS</a>, <a href="/topics/networks" class="red">Networks</a>, <a href="/topics/threat-intelligence" class="red">Threat Intelligence</a>,</div> <p> On Nov. 30 and Dec. 1, 2015, some of the Internet's Domain Name System (DNS) root name servers received large amounts of anomalous traffic. Last week the root server operators published a report on the incident. In the interest of further transparency, I'd like to take this opportunity to share Verisign's perspective, including how we identify, handle and react, as necessary, to events such as this. <a href="https://circleid.com/posts/20151215_verisign_perspective_on_recent_root_server_attacks" class="red"><span class="readmore">more</span></a> </p> <div class="postInfo pipedLinks"> <ul> <li>By <a href="https://circleid.com/members/3397" class="blue">Duane Wessels</a></li> <li>Dec 15, 2015</li> <li>Comments: 1</li> <li>Views: 20,082</li> </ul> </div> </div> </div> </div> </div> <div class="colB"> <div class="colPad"> <!-- TOPIC INTERESTS --> <h2 style="margin-bottom:10px;">Topic Interests</h2> <div style="padding:0 0 30px 0;line-height:20px;"> <a href="https://circleid.com/topicsdns"><strong>DNS</strong></a>, <a href="https://circleid.com/topicscybersecurity"><strong>Cybersecurity</strong></a>, <a href="https://circleid.com/topicscyberattack"><strong>Cyberattack</strong></a>, <a href="https://circleid.com/topicsddos_attack"><strong>DDoS Attack</strong></a>, <a href="https://circleid.com/topicsnetworks"><strong>Networks</strong></a>, <a href="https://circleid.com/topicsthreat-intelligence"><strong>Threat Intelligence</strong></a>, <a href="https://circleid.com/topicsdns-security"><strong>DNS Security</strong></a>, <a href="https://circleid.com/topicsicann"><strong>ICANN</strong></a>, <a href="https://circleid.com/topicsregistry_services"><strong>Registry Services</strong></a>, <a href="https://circleid.com/topicsdomain_names"><strong>Domain Names</strong></a> </div> <!-- RECENT COMMENTS --> <h2>Recent Comments</h2> <div class="postListMini" style="padding:0 0 15px 0;"> <div class="cmntList"> <strong><a href="https://circleid.com/posts/87143_dns_not_a_guessing_game/#4300">Not a Guessing Game</a></strong> <div class="byLine">Jul 28, 2008 4:49 PM PDT</div> </div> <div class="cmntList"> <strong><a href="https://circleid.com/posts/87143_dns_not_a_guessing_game/#4297">Not a Guessing Game</a></strong> <div class="byLine">Jul 28, 2008 3:27 PM PDT</div> </div> <div class="cmntList"> <strong><a href="https://circleid.com/posts/87143_dns_not_a_guessing_game/#4250">Not a Guessing Game</a></strong> <div class="byLine">Jul 18, 2008 5:27 PM PDT</div> </div> <div class="cmntList"> <strong><a href="https://circleid.com/posts/87143_dns_not_a_guessing_game/#4249">Not a Guessing Game</a></strong> <div class="byLine">Jul 18, 2008 5:22 PM PDT</div> </div> <div class="cmntList"> <strong><a href="https://circleid.com/posts/87143_dns_not_a_guessing_game/#4248">Not a Guessing Game</a></strong> <div class="byLine">Jul 18, 2008 5:20 PM PDT</div> </div> </div> <!-- RECENT BLOGS --> <!-- MOST POPULAR --> <h2>Popular Posts</h2> <div class="postListMini" style="padding:0 0 30px 0;"> <h3 style="padding-top:0;margin-top:0;border:none;"><a href="https://circleid.com/posts/20151215_verisign_perspective_on_recent_root_server_attacks">Verisign’s Perspective on Recent Root Server Attacks</a></h3> <div class="byLine pipedLinks"> <ul> <li>Dec 15, 2015</li> <li>Comments: 1</li> <li>Views: 20,082</li> </ul> </div> <h3><a href="https://circleid.com/posts/20230810-verisign-will-help-strengthen-security-with-dnssec-algorithm-update">Verisign Will Help Strengthen Security With DNSSEC Algorithm Update</a></h3> <div class="byLine pipedLinks"> <ul> <li>Aug 10, 2023</li> <li>Comments: 0</li> <li>Views: 19,547</li> </ul> </div> <h3><a href="https://circleid.com/posts/20160506_increasing_the_strength_of_the_zone_signing_key_for_the_root_zone">Increasing the Strength of the Zone Signing Key for the Root Zone</a></h3> <div class="byLine pipedLinks"> <ul> <li>May 06, 2016</li> <li>Comments: 0</li> <li>Views: 19,400</li> </ul> </div> <h3><a href="https://circleid.com/posts/20170929_a_closer_look_at_postponing_of_root_zone_ksk_rollover_decision">A Closer Look at Postponing of the Root Zone KSK Rollover Decision</a></h3> <div class="byLine pipedLinks"> <ul> <li>Sep 30, 2017</li> <li>Comments: 0</li> <li>Views: 13,341</li> </ul> </div> <h3><a href="https://circleid.com/posts/20190326_unexpected_effects_of_the_2018_root_zone_ksk_rollover">Unexpected Effects of the 2018 Root Zone KSK Rollover</a></h3> <div class="byLine pipedLinks"> <ul> <li>Mar 26, 2019</li> <li>Comments: 0</li> <li>Views: 11,284</li> </ul> </div> </div> </div> </div> <div class="clear"></div> </div> <div id="footer"> <div id="footerContent"> <div style="float:left;"> <a href="/"><img src="/images/circleid.svg" border="0" style="width:140px;opacity: 0.9;" /></a><br /> <p style="font-size:14px;padding:11px 0 15px 0;margin:0;">A World-Renowned Source for Internet Developments. Serving Since 2002.</p> </div> <div style="float:right;"> <p style="font-size:12px;padding:0 0 10px 0;margin:0;line-height:1em;text-align:right;letter-spacing:0.05em;">FOLLOW</p> <a href="https://x.com/circleid" class="socialIcon"><i class="fa-brands fa-square-x-twitter"></i></a> <a href="https://www.facebook.com/circleid/" class="socialIcon"><i class="fa-brands fa-square-facebook"></i></a> <a href="https://www.linkedin.com/company/circleid" class="socialIcon"><i class="fa-brands fa-linkedin"></i></a> <a href="http://feeds.circleid.com/cid_master/" class="socialIcon"><i class="fas fa-rss-square"></i></a> </div> <div id="links" class="clear"> CIRCLEID: <a href="https://circleid.com/about">About</a> | <a href="https://circleid.com/about/contact">Contact Us</a> <br /> SECTIONS: <a href="/">Home</a> | <a href="https://circleid.com/topics">Topics</a> | <a href="https://circleid.com/blogs">Featured Blogs</a> | <a href="https://circleid.com/news">News Briefs</a> | <a href="https://circleid.com/industry">Industry Updates</a> | <a href="https://circleid.com/community">Community</a> <br /> TERMS OF USE: <a href="https://circleid.com/about/codes">Codes of Conduct</a> | <a href="https://circleid.com/about/privacy">Privacy Policy</a> | <a href="https://circleid.com/about/terms">Terms of Use</a> <br /><br /> Copyright © 2002-2025 CircleID. All rights reserved unless where otherwise noted. <br />Local Time: Wednesday, May 07, 2025 05:06 AM PDT – Page Load: 0.1507 Sec. </div> </div> </div> </body> </html>