Mark Andrews wrote:
> RFC 4035 requires the upstream cache to be RFC 4035 aware.
Thanks. As examplified by assumptions of RFC3225, that's a so
unrealistic requirement that no further discussion on DNSSEC
is necessary. PERIOD.
> And lack of TCP support will also break PODS responses as well.
> Authoritative servers can sometimes get away with disabling TCP.
> Stub and caches have never been able to get away with disabling
> TCP.
In theory, yes, in practice, only those who supply large RRs
requiring TCP (or EDNS) will suffer.
Masataka Ohta
_______________________________________________
DNSOP mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dnsop