SetDNSSECRequest

The DNSSEC material a domain should end up with.

  • The full DS record set, replaced whole, for a registry running the DS data interface. An empty array takes the name insecure. Required unless key_records is sent; the two cannot travel together.

    Properties: 5
  • The full DNSKEY record set, replaced whole, for a registry running the key data interface. An empty array takes the name insecure. Required unless ds_records is sent; the two cannot travel together.

    Properties: 4
  • The domain version this change was composed against. Send it and a domain that moved since you read it refuses the change instead of writing over the move. Omit it and nothing is asserted.

  • Your own note, kept on the change and shown wherever it is read. Never interpreted.