Jump to first page
 -21
DNSSEC Summary on 1 page
nData authenticity and integrity by SIGning the resource records
nPublic KEYs used to verify the SIGs
nChildren sign their zones with their private key; The authenticity of their KEY is established by a SIGnature over that key by the parent (DS)
nIn the ideal case, only one public KEY needs to be distributed off-band