Hi all

https://tools.ietf.org/html/draft-ietf-dnsop-edns-client-subnet-06

says in Section 6. Option Format:

>   o  A server receiving an ECS option that uses more ADDRESS octets
>      than are needed, or that has non-zero bits set beyond SOURCE
>      PREFIX-LENGTH, SHOULD return REFUSED to reject the packet, as a
>      signal to the developer of the software making the request to fix
>      their implementation.

FORMERR seems more appropriate than REFUSED for an implementor to notice
format issues, and perhaps this has been raised on this list already. If
you can change this, please change this to FORMERR.

I have a related clarification. What if the ADDRESS field has fewer
octets than than SOURCE PREFIX-LENGTH indicates? Should REFUSED or
FORMERR be returned in this case? The draft must clarify this if it's
requiring REFUSED.

                Mukund

Attachment: signature.asc
Description: PGP signature

_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to