At 22:23 +0000 2/16/07, Paul Vixie wrote:
what i'd like is permission from the IETF community to change our default.
My opinion...and just that...
Don't change. I prefer having the nameserver be told to take extra
measures in a case like this.
1) RFC 1918 is legitimate space, it's just not routed.
2) By moulding a platform to peculiar behaviors it looses flexibility.
3) I don't buy this as a security risk. I don't think there is a problem here.
I mention #3 in the vein that I don't like to see permanent fixes to
temporary problems (or extremely rare misconduct).
I don't buy that this is a security risk; if it is, DNSSEC would be
the fix to that (for once).
--
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
Edward Lewis +1-571-434-5468
NeuStar
"Two years ago you said we had 5-7 years, now you are saying 3-5. What I
need from you is a consistent story..."
_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www1.ietf.org/mailman/listinfo/dnsop