On Mon, Jan 18, 2021 at 03:54:49PM +0000, Roy Arends wrote: > Hi Viktor, > > > On 18 Jan 2021, at 06:57, Viktor Dukhovni <[email protected]> wrote: > > > > TL;DR. The BCP NSEC/NSEC3 choices are IMHO: > > > > ... > > Hi Viktor, > > I agree with you. > > ...
so do i. but i'm concerned about that. most of the operators of dnssec machinery have not been born yet, and most dnssec machinery that will ever be used has not been created yet. i don't think those future operators and creators will read this mailing list's archives. where can we put the agreed wisdom of our era so that it can be easily and persistently found both in this and future eras? (same for the empty salt thread, and likely many others past and future.) -- Paul Vixie _______________________________________________ dns-operations mailing list [email protected] https://lists.dns-oarc.net/mailman/listinfo/dns-operations
