F5’s implementation of DNSSEC through patent-pending, real-time signing is a crucial architectural element in the F5 and Infoblox joint three architecture solutions. Standard implementations of DNSSEC assume a fairly static zone configuration that provides the same responses to a specific DNS query, whether an SOA, MX, or A-record. Changes to a zone’s records are generally minimal. The zones are usually pre-signed with all the appropriate keys and hashing and stored in the same static zone files. Signing a large zone can take longer than thirty minutes depending on the size of the zone. Infoblox supports incremental signing that reduces the overhead associated with record information changes. Infoblox also provides market-leading, single-step DNSSEC signing and automated key management, making it easier to provide DNSSEC responses for a standard DNS zone.