On Tue, Nov 10, 2015 at 09:29:30PM +0000, Tony Finch wrote:

> Paul Hoffman <paul.hoff...@vpnc.org> wrote:
> 
> > > With the current DNS protocol, a stub resolver can get all the records it
> > > needs to validate a response in 1RTT, by sending multiple concurrent
> > > queries for all the possible delegation points in the QNAME.
> >
> > I'm confused. How does the stub know all of those ahead of time?
> 
> The possible delegation points are where the dots are in the QNAME.

Except in the presence of CNAME (possibly via DNAME) records, which
might mean that the client needs more records to validate multiple
nodes in the DNS tree.

So without nameserver assistance 1RTT via parallelism is not always
possible.

-- 
        Viktor.

_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to