On 07/25/2017 01:07 AM, Paul Vixie wrote: > i think content blocking is a reach -- in your interpretation. > > this is about CDN. as in, how to decide which address record set to > give a dns client, given that all you know is the recursive server > address, yet you're trying to implement policy for an expected tcp > session that might immediately follow. Perhaps I'm reading the wrong RFC? I was basing my comments on https://tools.ietf.org/html/draft-tale-dnsop-edns0-clientid-01, which very explicitly talks about content blocking:
> For example, a parental control service that restricts access to particular domains from particular devices needs to have a device-specific identifier. _______________________________________________ DNSOP mailing list DNSOP@ietf.org https://www.ietf.org/mailman/listinfo/dnsop