Errors while compiling the digest:
- Repo ietf-wg-dnsop/draft-ietf-dnsop-rfc9471bis/events yields 404 error
Pull requests
-
* ietf-wg-dnsop/draft-ietf-dnsop-structured-dns-error (+1/-0/💬0)
1 pull requests submitted:
- Neil's suggestions: ignore unrecognized JSON names, and longe
zuop...@cnnic.cn wrote on 2024-01-06 22:59:
...
Aggressive NSEC (RFC 8198) is useful against to NXNSAttack –like attack,
because it allows a DNSSEC-validating resolver to generate negative
answers within a range. ...
have you looked at dns rrl?
... But if a NSEC3 RR has an Opt-Out flag, i
saw this today, looks damned useful.
https://www.helpnetsecurity.com/2023/11/21/polardns-open-source-dns-server/
___
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop
On Jan 7, 2024, at 05:02, Paul Vixie wrote:
>
>
> i think as long as we keep adding features that are only necessary because
> dnssec lacks certain features or is not universally deployed or both, then
> dnssec will lack certain features or not be universally deployed or both.
> please be car