Its my understanding that EDNS is going to be required to exchange keys properly for DNSSEC. Am I wrong? Is EDNS going to be a requirement in the future?

Thanks in advance,
Curtis

On 3/18/2010 8:40 PM, Michael Fincham wrote:
Hi Bert,

Thanks for the expedient and comprehensive reply.

On Thu, 2010-03-18 at 06:45 +0100, bert hubert wrote:
The 'nothing but trouble' refers to the surprisingly large number of servers
that when queried with EDNS on, either provide no answer, return a SERVFAIL
or a malformed answer.

As it turns out, my testing has shown that at least one important
NZ-based government website falls in to this category :(


I hope the above answers your questions.

Sure did, cheers.


_______________________________________________
Pdns-users mailing list
Pdns-users@mailman.powerdns.com
http://mailman.powerdns.com/mailman/listinfo/pdns-users

Reply via email to