Dear DNS Operations folk, Matt Larson and I wrote up a method that warns a domain owner of an issue with their configuration. The idea is loosely based on DMARC (RFC7489), and on Trust Anchor signalling (RFC8145).
The method involves an EDNS0 exchange, containing an “agent” domain, send by the authoritative server that the resolver can send reports to in case of a failure. Please see https://tools.ietf.org/html/draft-arends-dns-error-reporting-00 <https://tools.ietf.org/html/draft-arends-dns-error-reporting-00> I will ask the DNSOP chairs for a slot during IETF109 to present the idea. Warmly, Roy
_______________________________________________ DNSOP mailing list [email protected] https://www.ietf.org/mailman/listinfo/dnsop
