Projects
| Nov 2008 - now: OpenDNSSEC | |
|---|---|
|
OpenDNSSEC is an open-source turn-key solution for DNSSEC.
I am mainly designing and developing on the Signer Engine module, and
initially designed the state machine for the Enforcer NG.
website (OpenDNSSEC) |
| Nov 2007 - now: NSD3 | |
|---|---|
|
NSD is an authoritative only, high performance, simple and open source name server.
Since the 3.0.6 release, I am maintaining the software implementation by NLnet Labs.
project page (NLnet Labs) |
|
| Jun 2008 - Dec 2009: Autotrust | |
|---|---|
|
Autotrust is a RFC 5011 compliant tool that you can run next to your security-aware, validating DNS resolver.
It eats trust anchor files or Bind9-like trusted-keys clauses and will automatically update the configured trust anchors, according to the RFC.
In case of any changes, it will send a reload signal to the resolver.
Since November 2009, the code has been integrated into Unbound.
RFC 5011 project page (NLnet Labs) Unbound |
| Oct 2006 - May 2007: Shim6 | |
|---|---|
|
My final project as a student is about formalization and verification of the IPv6 host-based multihoming protocol, Shim6.
The work resulted in a formal model, a contribution to the RFC, a patch for Wireshark, a conformance test of a beta implementation and, of course, a thesis.
RFC 5533, RFC 5534, RFC 5535 project page (NLnet Labs) |