On 13 Jan 2010, at 20:01, Alex Bligh wrote:

An EDNS0 ignorant resolver MUST issue the priming query over UDP.

I presume you mean DNSSEC ignorant.

That's implicit. The language was in Olafur's original text BTW...

If a resolver doesn't speak EDNS0, it can't set the DO bit. Which means the authoritative server isn't supposed to send back DNSSEC- related RRs. Unless the resolver explicitly queries for those RRtypes. Which seems unlikely, particularly in the context of a priming query. It would be very odd for a DNS implementation to be DNSSEC-aware and not support EDNS0. Then again, the DNS is full of all sorts of weirdness and bizarre implementations.
_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to