Stephane Bortzmeyer wrote:
> I regret one thing with SSAC 032: they mix wildcards in the zone and
> lying resolvers. True, they have similarities but also differences
> (for instance, wildcards in a zone follow the DNS protocol, and
> therefore are compatible with DNSSEC) and I'm a bit tired of Slashdot
> discussions starting with "Comcast == Sitefinder".

Another difference compared to Site Finder is that while Site Finder
only added wildcards to the zones of certain top-level domains, "web
error redirection" as described in the draft effectively behaves as if
a wildcard had been added to every single zone in the DNS, not just
every TLD but also the root zone and every zone delegated from the
TLDs, including your own zones.  This is indeed not just Site Finder
all over again - it's far worse, and breaks far more applications than
Site Finder did.
-- 
Andreas Gustafsson, g...@araneus.fi
_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to