]> git.ipfire.org Git - thirdparty/bind9.git/commitdiff
Add release notes for RSAMD5 removal.
authorOndřej Surý <ondrej@sury.org>
Tue, 4 Dec 2018 16:32:33 +0000 (17:32 +0100)
committerOndřej Surý <ondrej@sury.org>
Tue, 11 Dec 2018 10:32:24 +0000 (11:32 +0100)
doc/arm/notes.xml

index beb8ca1e17a85291e47b967f6d261fe7a86a93f3..c871197efd38f62e0a15e8abe18dfa414f9d7c39 100644 (file)
          removed from BIND as the DSA key length is limited to 1024
          bits and this is not considered secure enough.
        </para>
+       <para>
+         Support for RSAMD5 algorithm has been removed freom BIND as the usage
+         of the RSAMD5 algorithm for DNSSEC has been deprecated in RFC6725 and
+         the security of MD5 algorithm has been compromised and the its usage
+         is considered harmful.
+       </para>
       </listitem>
     </itemizedlist>
   </section>