> On Nov 12, 2015, at 7:59 AM, Wiley, Glen <gwi...@verisign.com> wrote: > > I have seen the ISC EDNS compliance report (beautiful thing really), but it > loks as though the focus is really on the name servers and name server > operators. Has a recent study been done to examine whether client side/ISP > firewalls are interfering with EDNS?
We've done some of this in Netalyzr. Captive portals in particular are a problem, with about 1% of systems measured in Netalyzr unable to use EDNS0 to get DNSSEC information either from the recursive resolver OR directly from the roots. -- Nicholas Weaver it is a tale, told by an idiot, nwea...@icsi.berkeley.edu full of sound and fury, 510-666-2903 .signifying nothing PGP: http://www1.icsi.berkeley.edu/~nweaver/data/nweaver_pub.asc
signature.asc
Description: Message signed with OpenPGP using GPGMail
_______________________________________________ DNSOP mailing list DNSOP@ietf.org https://www.ietf.org/mailman/listinfo/dnsop