Wes, all, thanks for putting together draft-ietf-dnsop-nsec3-guidance. I have one small comment regarding section 2.2 (Flags):
In some deployments of larger (eg TLD), in-memory zone size on the authoritative servers is a significant issue, particularly if the total memory size required is multiplied by hundreds of anycast nodes. Opt-out for such zones with sparse DNSSEC deployment can make a big operational / cost difference there. Maybe that aspect should be included in the document. thanks! Alex _______________________________________________ DNSOP mailing list DNSOP@ietf.org https://www.ietf.org/mailman/listinfo/dnsop