Stephane Bortzmeyer writes:
> > One current implementation does not differentiate DO=0 vs 1 and gives the
> > same NODATA answer for both cases.
> 
> Yes. I see no practical problem with that but, from a philosophical
> point of view, it disturbs me. Naive clients may make wrong
> conclusions from the NODATA answer. 

Very much so, and not just naive programmatic clients but also
non-naive real-life human clients.  I myself have been misled by
noerror/nodata where nxdomain would have been correct.  It's
frustrating.

nxdomain is usefully distinct and auth servers really ought to be
strongly encouraged to return it where applicable.

_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to