Hi,

On Jul 28, 2014, at 5:48 AM, Nicholas Weaver <[email protected]> wrote:
> The IPv6 net has decreed “No, really, FRAGMENTS DO NOT WORK”.

This could be a bit of an issue when the DNSSEC root key is rolled. Could 
someone point me to a writeup and/or data as to how we know the above decree? 
(I'm not disagreeing, I just haven't really been following this for a while).

> The solution is to detect and fallback on EDNS0 MTU to retry at 1400B first 
> (rather than directly down to 512b), and properly handle truncation.  

How many shipping resolvers actually do this?

Regards,
-drc

Attachment: signature.asc
Description: Message signed with OpenPGP using GPGMail

_______________________________________________
DNSOP mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to