On Tue, Nov 10, 2015 at 09:29:30PM +0000, Tony Finch wrote: > Paul Hoffman <paul.hoff...@vpnc.org> wrote: > > > > With the current DNS protocol, a stub resolver can get all the records it > > > needs to validate a response in 1RTT, by sending multiple concurrent > > > queries for all the possible delegation points in the QNAME. > > > > I'm confused. How does the stub know all of those ahead of time? > > The possible delegation points are where the dots are in the QNAME.
Except in the presence of CNAME (possibly via DNAME) records, which might mean that the client needs more records to validate multiple nodes in the DNS tree. So without nameserver assistance 1RTT via parallelism is not always possible. -- Viktor. _______________________________________________ DNSOP mailing list DNSOP@ietf.org https://www.ietf.org/mailman/listinfo/dnsop