Hello.

This line is misleading, I believe:

- RFC8198 describes how a validating resolver can emit fewer queries in signed zones that
use NSEC for negative caching.

That RFC describes aggressive caching also for NSEC3 and (positive) wildcards.  (Of course, opt-out NSEC3 records are basically useless, but many zones are without opt-out.)

For example, the formulation could be simply truncated as:
> RFC8198 describes how a validating resolver can emit fewer queries in signed zones.


--Vladimir | knot-resolver.cz
_______________________________________________
DNSOP mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to