The document as written still waffles between insecure delegation and secure 
denial of existence.   I think that if the document were published with the 
recommendation of an insecure delegation, this would be actively harmful.   If 
it's published with the secure denial of existence, it would probably improve 
the state of the art.

Unfortunately I don't think that calls for adoption really give us a basis for 
stating such preferences.   But that's basically where I land on this.   I 
would be perfectly happy to support this document if it does the right thing, 
but I'm dead set against it if it doesn't.   I am of course willing to 
participate in working on the document if adopted—I've already sent some text, 
and am grateful to the author for having for the most part accepted my proposed 
changes.

_______________________________________________
DNSOP mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to