I have read the most recent version of the document and am strongly in
favor of its publication as a proposed standard.  I want my NXDOMAINs
back.

I have little substantive feedback on the text, mostly personal
editorial preferences that are not worth fussing about.

That said, is "lexicographic successor" defined anywhere
handy?  Though I know what it is, perhaps it'd be helpful for
implementers to have a reference to ... 4471 section 3.1.2?

Also, I'm feeling stupid, but how does this preclude RFC 8020 as said
in the Operational Considerations section?  Are you saying it
precludes signed NXDOMAINs from cache?  Because if I, a resolver, ask
about bigfoot.example.com and get told "bigfoot doesn't exist, and
here's the NXNAME to prove it", why can't I then let non-DNSSEC
clients know that sonof.bigfoot.example.com also doesn't exist without
asking example.com again?  Maybe that sentence needs either a
qualification, or an explanation for folks like me.


_______________________________________________
DNSOP mailing list -- dnsop@ietf.org
To unsubscribe send an email to dnsop-le...@ietf.org

Reply via email to