On Oct 17, 2013, at 6:15 PM, Richard Lamb <richard.l...@icann.org> wrote:
> ...did nothing but boot up and offer recursive dns to the local LAN, with 
> auto-update of dnssec keys, default limits for rate limiting, and a 
> subscription to an RPZ that was hosted say by DNS-OARC, then we'd be done by 
> now. it could have a slightly custom kernel that allowed the server to 
> specify IP.TTL=3 in sendmsg().


Well on the good front, most of the custom builds to replace the crap home 
router firmwares use Unbound or DnsMasq and I'm even starting to see them 
shipping on units by default. Both of these fit your description, and work 
decently well for that super-minimal need (that solves the issue for most 
households).  Honestly I think getting more units to use these distributions 
will quietly solve the problem for most small sites.

Windows-based sites with Windows resolution needs have bought their own pain.

-- 
Jo Rhett
Net Consonance : net philanthropy to improve open source and internet projects.

Author of Instant Puppet 3 Starter: 
http://www.netconsonance.com/instant-puppet-3-starter-book/



_______________________________________________
dns-operations mailing list
dns-operations@lists.dns-oarc.net
https://lists.dns-oarc.net/mailman/listinfo/dns-operations
dns-jobs mailing list
https://lists.dns-oarc.net/mailman/listinfo/dns-jobs

Reply via email to