You need to enable JavaScript to use the communication tool powered by OpenWidget

The DNSSEC key generation ceremony for the .UA domain took place.

On December 2, 2011, a public ceremony to generate DNSSEC keys for the .UA domain was held in Kyiv as part of the First All-Ukrainian Conference of Administrators and Registrars of Public Domains of Ukraine UAdom.

The ceremony was attended by:

Dmitry Kokhmanyuk - .UA administrator and master of ceremonies;

Svetlana Tkachenko (Hostmaster company) - protocol administrator;

Evgeniy Sherstobitov (Communication Systems Ltd.) - key administrator;

Tatyana Dolinskaya (Hostmaster company) - keeper of the main key;

Taras Geychenko (Hostmaster company) - DNS operator representative;

A group of official observers from registrar companies and public organizations, who signed the protocol at the end of the ceremony: Natalia Moroz (NIC.UA), Georgy Karpov (InAU), Vasily Dolmatov (Cryptocom, FAITID, - Russia), Anton Trifonov (1GB), Yuriy Chaly (OOO Unitrade Pro), Vitaly Zubok (OOO Information Center Elvisti).

The ceremony took place in the presence of all UAdom participants and was accompanied by . The master of ceremonies announced each successive action, and upon its completion, the protocol administrator made a corresponding note.

During the ceremony, the OpenBSD system was loaded from a CD onto a computer free of any software or operating systems and not connected to any networks. Further work was carried out in console mode.

First, the key administrator generated a so-called key signing key (KSK), demonstrated it, and wrote it to a storage device. He then handed it over to the master key custodian. The custodian placed the device in a special package that ensures it cannot be tampered with undetected.

The administrator then generated a public ZSK (zone signing key). He displayed it on the screen and signed it with the KSK. He copied the signed key to a storage device and handed it over to the DNS operator representative. The representative placed the device in a bag for safekeeping.

After displaying the DS hash value on the screen, the key administrator wrote the public keys and the DS hash value to a third storage device and handed it over to the .UA administrator. The administrator also encapsulated the device in a packet. The unique numbers of all packets were recorded in the protocol.

Once these steps were completed, the computer was turned off. All ceremony participants, including observers, then signed the protocol.

Details of what will happen with the generated keys will be available soon on the official Hostmaster website page dedicated to DNSSEC.

One thing can be said already: the era of DNSSEC implementation has arrived in Ukraine, and this is irreversible.

About a hundred representatives of the Ukrainian domain market, who participated in the event, became unofficial observers of the ceremony.UAdom conferencesThe conference was organized by Hostmaster with the support of a gold sponsor.Service Online company, consisted of four sections, which examined the marketing, technical and legal aspects of the activities of domain market participants.

Hostmaster company

  • Helpful articles

    • Glossary

      • Latest news & promotions

          Loading…