Doug Barton dougb at dougbarton.us
Fri Apr 11 18:44:45 UTC 2014

On 04/11/2014 11:35 AM, Barry Shein wrote:
> So, DNSSEC is also compromised by this heartbleed bug, right?

There is nothing in the DNSSEC protocol that requires the Heartbeat 
functionality. However whether a specific implementation of DNS software 
is vulnerable or not depends on how it's compiled. I would expect that 
most would not be. ISC for example just released a statement that BIND 
is not:




More information about the NANOG mailing list