DNSSEC in .CL

Implementation

Administrators of domain names under .CL that wish to implement DNSSEC, may do it in the zones under their control by creating a public key which has to be sent to NIC Chile. At its time NIC Chile will sign these keys and will create a chain of trust from .CL towards the domain name.

NIC Chile publish an official document with the policies and procedures for signatures in .CL called DPS (DNSSEC Signing Policy and Practice Statement), explaining procedures for the signing process and key rollovers. When available, it will include procedures for sending keys to be signed by NIC Chile.