On Tue, Nov 30, 2021 at 8:10 PM Paul Vixie <paul= 40redbarn....@dmarc.ietf.org> wrote:
> i only use REFUSED if the same question from some other query source (by > IP) or signed differently (with TSIG or SIG(0)) could possibly work. for > out-of-authority requests, the server must fail to answer. I have to confess that that really doesn't make sense to me. If you don't return an answer, aren't you going to get hammered with retransmissions?
_______________________________________________ DNSOP mailing list DNSOP@ietf.org https://www.ietf.org/mailman/listinfo/dnsop