On Thu, 11 May 2017, tjw ietf wrote:
This starts a Call for Adoption for: draft-hunt-dnsop-aname
The draft is available here:
https://datatracker.ietf.org/doc/draft-hunt-dnsop-aname/
Please review this draft to see if you think it is suitable for adoption by
DNSOP, and comments to the list,
clearly stating your view.
I am against adopting this document. It proposes to create a new RRTPYE
that has specialised processing and bundles two problem solutions into
one niche solution that has offline DNSSEC signing issues.
I think it is better to solve the problem in two dinstict parts:
1) Create an ANAME record that instructs where an AUTH server can get updated
data
regarding its A/AAAA records. This can be signed without any problem.
2) Create an EDNS0 option allowing arbitrary query types to be bundled.
This will allow asking for A+AAAA+ANAME, resulting in getting the
latest known records plus a reference where to get updates in one query.
There were already drafts out there that address 2)
Also, solving 2) allows bund;ing to be used for other record types as
well (that don't use _prefixes).
Paul
_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop