On Fri, Nov 19, 2021 at 6:48 PM Daniel Kahn Gillmor <[email protected]>
wrote:
...

> To avoid incurring additional minor timeouts for such a recursive
> resolver, the pool operator should either:
>

Nit: These should not be timeouts.  The non-participating backends are
expected to return TCP RST or ICMP Destination Unreachable (Port
Unreachable), leading to immediate fallback after 1 RTT.  Maybe the draft
needs some guidance to that effect.

A timeout is still possible if the network is misbehaving (e.g. ICMP
blackhole), but it shouldn't happen otherwise.

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

_______________________________________________
dns-privacy mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dns-privacy

Reply via email to