From Wikipedia, the free encyclopedia
Jump to: navigation, search
Stable release 1.4.6 / July 21, 2014; 13 months ago (2014-07-21)
Written in C, C++
Operating system Linux, FreeBSD, NetBSD, Mac OS X, Solaris
License BSD
Stable release 1.3.7 / May 8, 2014; 16 months ago (2014-05-08)
Preview release 2.0.0b1 / September 11, 2014; 12 months ago (2014-09-11)
Written in C++
Operating system Linux, FreeBSD, NetBSD, Mac OS X
Type Hardware security module (HSM)
License BSD

OpenDNSSEC is a computer program that manages the security of domain names on the Internet. The project intends to drive adoption of Domain Name System Security Extensions (DNSSEC) to further enhance Internet security.

OpenDNSSEC was created as an open-source turn-key solution for DNSSEC. It secures DNS zone data just before it is published in an authoritative name server. OpenDNSSEC takes in unsigned zones, adds digital signatures and other records for DNSSEC and passes it on to the authoritative name servers for that zone. All keys are stored in a hardware security module and accessed via PKCS #11, a standard software interface for communicating with devices which hold cryptographic information and perform cryptographic functions.

OpenDNSSEC uses the Botan cryptographic library, and SQLite or MySQL as database back-end. It is used on the .se, .dk, .nl and .uk top-level domains.[1]

See also[edit]


  1. ^ "OpenDNSSEC". Retrieved 17 September 2014. 

External links[edit]