From: Petr Špaček Date: Fri, 3 Jan 2020 19:27:45 +0000 (+0100) Subject: doc: ta_sentinel polish for new docs structure X-Git-Tag: v5.0.0~8^2~39 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=d95524dc981c0c5fc4c64d780fff4b68fdeeb0a9;p=thirdparty%2Fknot-resolver.git doc: ta_sentinel polish for new docs structure --- diff --git a/modules/ta_sentinel/README.rst b/modules/ta_sentinel/README.rst index c3b17a473..5513d7076 100644 --- a/modules/ta_sentinel/README.rst +++ b/modules/ta_sentinel/README.rst @@ -3,15 +3,14 @@ Sentinel for Detecting Trusted Root Keys ---------------------------------------- -The module implementing A Root Key Trust Anchor Sentinel for DNSSEC -according to `draft-ietf-dnsop-kskroll-sentinel-12`_. +The module ``ta_sentinel`` implements A Root Key Trust Anchor Sentinel for DNSSEC +according to standard :rfc:`8509`. -This feature allows users of validating resolver to detect which root keys -are configured in their chain of trust. The data from such -signaling are necessary to monitor the progress of the DNSSEC root key rollover. +This feature allows users of DNSSEC validating resolver to detect which root keys +are configured in resolver's chain of trust. The data from such +signaling are necessary to monitor the progress of the DNSSEC root key rollover +and to detect potential breakage before it affect users. One example of research enabled by this module `is available here `_. This module is enabled by default and we urge users not to disable it. If it is absolutely necessary you may add ``modules.unload('ta_sentinel')`` to your configuration to disable it. - -.. _`draft-ietf-dnsop-kskroll-sentinel-12`: https://tools.ietf.org/html/draft-ietf-dnsop-kskroll-sentinel-12