I’ve included a patch for dnssec support using the new DNSSEC4J library at:
https://github.com/adamfisk/DNSSEC4J
The patch adds a dnsSecEnabled field to SmackConfiguration with the default being false. If it is enabled, the patch modifies ProxyInfo to wrap SocketFactories in a VerifiedSocketFactory class that resolves and verifies the signatures of host names before passing them on to the underlying SocketFactory implementation.
Thank you for your consideration, and feel free to contact me at any time with questions or changes. DNSSEC4J was built with the generous support of the NLnet foundation at http://nlnet.nl/.
-Adam Fisk
President
Brave New Software Project, Inc.
dnssec_patch.tgz (10953 Bytes)