This starts a Call for Adoption for draft-wkumari-dnsop-extended-error

I have reviewed the draft, and while I think it could be useful, I'm
seriously worried about sending unauthenticated errors back to the user,
and fear that software will start using these without first validating
the response using DNSSEC.

I would like to see more discussion on this topic before adopting this
document with a focus on how we could secure these error codes.

Paul

_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to