[nsd-users] Can XoT use self-signed certificates?

Klaus Darilion klaus.darilion at nic.at
Mon Mar 17 13:31:39 UTC 2025


Hi!

I am testing XoT with NSD as secondary.

As far as I see, for certificate validation always the OS installed CA certificates are used. (/etc/ca-certificates.conf in Ubuntu)

Is it possible to use self signed certificates and manually configure a trust-anchor (e.g. ca-file option in many other TLS supported software)?

Is it possbile to use opportunistic/ephemeral TLS as supported by Bind?

Thanks
Klaus
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.nlnetlabs.nl/pipermail/nsd-users/attachments/20250317/88c39dd8/attachment.htm>


More information about the nsd-users mailing list