On Fri, Jan 14, 2011 at 03:09:21PM +0000, [email protected] wrote:
> 
> You can ignore the option and talk to the DNS server of your preference. You 
> can also choose to listen for the option only from one or more trusted 
> sources.
> 

I'm really unclear about this "trusted sources" thing, though.  Is
that "trust only if you're on a trusted network"?  Because I think the
problem basically is that there's no sDHCP, right?

> A bare name would unlikely find match from the suffix list. You could ask 
> resolution for the bare name from your favorite default.
> 
> After appending the bare name with some suffix from your search list you 
> could look for match from DNS server selection list.
> 
> Of course there could be multiple search list from different interfaces. In 
> such case you could prioritize the search lists by some means and start 
> walking through the suffixes when resolving bare name.
> 

This is all a little hand-wavy.  "Some means" sounds like the road to
user-surprise-perdition.  Bare names are already a bugbear, and I
don't think we want to make them even more surprising.

A

-- 
Andrew Sullivan
[email protected]
Shinkuro, Inc.
_______________________________________________
DNSOP mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to