> On Jul 31, 2018, at 10:51 AM, Edward Lewis <edward.le...@icann.org> wrote:
> 
> I wish I could recall why.  (Anyone else recall why this was dropped?  I 
> recall realizing it was a fool's errand but not the reasons.)  Yes, today's 
> network is different.


Olafur wrote a little about this a couple weeks ago.  He said:

"Historical background: SIG(AXFR) was rejected because it required putting the 
zone into canonical order and calculating the signature, in the case of dynamic 
update this is a real expensive operation, thus we got rid of it."


I have been looking at solutions to this problem, and have been implementing 
them in my proof-of-concept ZONEMD code.

DW

Attachment: smime.p7s
Description: S/MIME cryptographic signature

_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to