On 8/7/17, 11:45, "DNSOP on behalf of Ray Bellis" <dnsop-boun...@ietf.org on behalf of r...@bellis.me.uk> wrote:
> On 07/08/2017 16:44, Ólafur Guðmundsson wrote: > > > This was the original proposal, > > the drawback is that resolvers to not cache the answer, and to make > > things worse they ask ALL NS addresses for listed domain > > thus it acts as a DDoS against the domain in question. > > Indeed - I've since confirmed that BIND does this. > > I think my point still stands that this behaviour should be documented > in the section that talks about a possible new RCODE and why that option > was rejected. This thread is why I'd like to return "what the querier should do next" instead of "why I didn't answer". ;)
smime.p7s
Description: S/MIME cryptographic signature
_______________________________________________ DNSOP mailing list DNSOP@ietf.org https://www.ietf.org/mailman/listinfo/dnsop