• Debian 11 is approaching its end-of-life (vendor EOL date - August 31, 2026). Plesk Obsidian 18.0.80 will be the last release to support it.
    If you are running Plesk Obsidian on Debian 11, we recommend you upgrade those servers to Debian 12 using our dist-upgrade tool.
  • We plan to deprecate and remove the support for XML RPC protocol versions earlier than 1.6.9.1 in Plesk Obsidian 18.0.82. We strongly recommend that you update all existing integrations using earlier versions of the XML RPC protocol to comply with the version 1.6.9.1 specification.

Issue DNSSEC Harden Digest Type?

Walter

Basic Pleskian
I have successfully implemented DNSSEC on my server. However, I don't see where I can set the "Digest Type" encryption? Here are my initial default settings from the plugin itself.

Allowed algorithms for key generation:
ECDSAP384sha384

Key Signing Key
ECDSAP384sha384
Default size 4096
rollover period 1 year

Zone Signing Key ZSK
ECDSAP384sha384
Default size 4096
rollover period 6 months

I used these same settings on the domain itself but when it created the keys, it created them with:
The algorithm as selected BUT SHA-1 and SHA-256 were the digest types that were created. I should be able to select SHA-384 as well? Where can I modify the digest type before it is created?

I'd like to increase the digest type to at least be SHA-256?
 
Back
Top