Hi John, 

Thanks for your comment. 
We consider this issue is important, so for now, we focus on documenting this 
specific issue and its mitigations in a separate draft to provide clear and 
actionable guidance. 


> -----原始邮件-----
> 发件人: "John Levine" <[email protected]>
> 发送时间:2026-01-09 11:08:13 (星期五)
> 收件人: [email protected]
> 抄送: [email protected]
> 主题: [DNSOP] Re: Fw: New Version Notification for 
> draft-avoid-large-wildcard-records-00.txt
> 
> It appears that Peter Thomassen  <[email protected]> said:
> >Hi,
> >
> >This is an interesting attack vector, especially because of the 
> >concentration of bandwidth usage between the resolver and the
> >authoritative. The proposed solutions are also pretty reasonable.
> 
> I agree. If it were up to me this would be one section in a larger
> document descrbing the many DNS things that need limits to prevent them
> being used for DoS.
> 
> R's,
> John
> 
> _______________________________________________
> DNSOP mailing list -- [email protected]
> To unsubscribe send an email to [email protected]
_______________________________________________
DNSOP mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to