> bert hubert <mailto:bert.hub...@netherlabs.nl> > Sunday, September 21, 2014 4:52 AM > ... > > PS: the above is currently not yet supported for DNSSEC domains! > i'd be very interested in a standards-track (interoperable; including DNSSEC support and AXFR/IXFR) version of this feature. my hope is that you will remove out-of-zone capability here, that is, the target of ALIAS should have to be authority data in the same zone. this would simplify the DNSSEC case, but more importantly, it would avoid having authority servers make upstream queries.
if you decide to work on this, i'll contribute as at least a reviewer and perhaps (if invited) as an editor. -- Paul Vixie
_______________________________________________ DNSOP mailing list DNSOP@ietf.org https://www.ietf.org/mailman/listinfo/dnsop