Hello.
This line is misleading, I believe:
- RFC8198 describes how a validating resolver can emit fewer queries
in signed zones that
use NSEC for negative caching.
That RFC describes aggressive caching also for NSEC3 and (positive)
wildcards. (Of course, opt-out NSEC3 records are basically useless, but
many zones are without opt-out.)
For example, the formulation could be simply truncated as:
> RFC8198 describes how a validating resolver can emit fewer queries in
signed zones.
--Vladimir | knot-resolver.cz
_______________________________________________
DNSOP mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dnsop