No. They slow the leaks. They do not STOP the leaks. They depend on
leaks to work.
With a 24 hour TTL on the root zone, it ain't going to leak very much.
The practical TTL is 3 hours.
How come? This is a real question, unbound appears to believe the 24 hour
But dummy stub zones (which is what is being I'm requesting) require
changes in the root zone to add a insecure delegation to not break
other things. That requires IANA to be instructed to do so.
Hm, I see your point.
DNSOP mailing list