Evan, At 2016-03-02 06:49:43 +0000 Evan Hunt <e...@isc.org> wrote: > I agree with the suggestion upthread that we address the general case > instead of the root-only solution.
I can see that implementors such as yourself like won't bother with a special-cased version, and that adding code to restrict this technique to the root only is likely to be MORE WORK. (Although realistically there will probably need to be domain whitelisting & blacklisting in the resolvers in any case, because in DNS nothing works and everything is horrible and how does this stuff work at all?) I think that moving Fujiwara's fuller proposal forward will likely take an extra year and don't see any conflict with the cheese shop approach really. However since the cheese shop won't likely result in any running code, I also agree with the suggestion to focus on the general case. Cheers, -- Shane _______________________________________________ DNSOP mailing list DNSOP@ietf.org https://www.ietf.org/mailman/listinfo/dnsop