[DNSOP] Last Call: (Compact Denial of Existence in DNSSEC) to Proposed Standard

2024-12-09 Thread The IESG
The IESG has received a request from the Domain Name System Operations WG (dnsop) to consider the following document: - 'Compact Denial of Existence in DNSSEC' as Proposed Standard The IESG plans to make a decision in the next few weeks, and solicits final comments on this action. Please send

[DNSOP] Re: Last Call: (Compact Denial of Existence in DNSSEC) to Proposed Standard

2024-12-09 Thread Mukund Sivaraman
Hi all A late review (I'm sorry I've not been paying much attention here). [snip] > Abstract >This document describes a technique to generate a signed DNS response >on demand for a non-existent name by claiming that the name exists >but doesn't have any data for the queried record t

[DNSOP] Re: Last Call: (Compact Denial of Existence in DNSSEC) to Proposed Standard

2024-12-09 Thread Mukund Sivaraman
One more question: Is it necessary to add section 4.1 Signaled Response Code Restoration? A client that knows to set CO=1 can instead use NXNAME from the NSEC bitmap to rewrite the rcode for its use. Mukund signature.asc Description: PGP signature ___