> -----Original Message-----
> From: Andrew Newton <a...@hxr.us>
> Sent: Tuesday, June 27, 2023 10:18 AM
> To: Hollenbeck, Scott <shollenb...@verisign.com>
> Cc: regext@ietf.org; dn...@ietf.org
> Subject: [EXTERNAL] Re: [DNSOP] FW: New Version Notification for draft-
> hollenbeck-regext-epp-delete-bcp-00.txt
>
> Caution: This email originated from outside the organization. Do not click 
> links
> or open attachments unless you recognize the sender and know the content is
> safe.
>
> Hi Scott,
>
> Thanks for putting this together.
>
> In section 7.1 of your draft there is mention of a special "sacrificial.arpa" 
> to
> basically park these delegations to something that cannot be hijacked.
>
> Instead of creating sacrificial.arpa, could sacrificial.invalid from the 
> invalid TLD
> as defined by RFC 6761 be used? This would avoid the mechanics of getting
> sacrificial.arpa blessed plus it has the benefits that DNS SHOULD immediately
> respond with nxdomain.

[SAH] Sure, that's worth talking about. As you noted, there might be less 
friction compared to some of the alternatives.

Scott
_______________________________________________
regext mailing list
regext@ietf.org
https://www.ietf.org/mailman/listinfo/regext

Reply via email to