I did a quick scan of -core and did not find this issue dealt with:
When moving to a new key for a domain, may the same selector be used, or is the
signer required to use a different selector?
Stated differently: Is it true that a given selector+domain DNS lookup name
will produce at most one key, forever?
I think some folks believe that it might produce a different key, over time, and
I'd like us to be clear about whether it can do that.
NOTE WELL: This list operates according to