[DNSOP] Weekly github digest (DNSOP Working Group GitHub Activity Summary)

2024-01-07 Thread Repository Activity Summary Bot
Errors while compiling the digest: - Repo ietf-wg-dnsop/draft-ietf-dnsop-rfc9471bis/events yields 404 error Pull requests - * ietf-wg-dnsop/draft-ietf-dnsop-structured-dns-error (+1/-0/💬0) 1 pull requests submitted: - Neil's suggestions: ignore unrecognized JSON names, and longe

Re: [DNSOP] Fw: New Version Notification for draft-zuo-dnsop-delegation-confirmation-00.txt

2024-01-07 Thread Paul Vixie
zuop...@cnnic.cn wrote on 2024-01-06 22:59: ... Aggressive NSEC (RFC 8198) is useful against to NXNSAttack –like attack, because it allows a DNSSEC-validating resolver to generate negative answers within a range. ... have you looked at dns rrl? ... But if a NSEC3 RR has an Opt-Out flag, i

[DNSOP] PolarDNS

2024-01-07 Thread Paul Vixie
saw this today, looks damned useful. https://www.helpnetsecurity.com/2023/11/21/polardns-open-source-dns-server/ ___ DNSOP mailing list DNSOP@ietf.org https://www.ietf.org/mailman/listinfo/dnsop

Re: [DNSOP] Fw: New Version Notification for draft-zuo-dnsop-delegation-confirmation-00.txt

2024-01-07 Thread Paul Wouters
On Jan 7, 2024, at 05:02, Paul Vixie wrote: > > > i think as long as we keep adding features that are only necessary because > dnssec lacks certain features or is not universally deployed or both, then > dnssec will lack certain features or not be universally deployed or both. > please be car