On Mon, Jul 08, 2019 at 05:27:21PM +0000, Michael J. Sheldon <mshel...@godaddy.com> wrote a message of 23 lines which said:
> And it still leaves the issue that recursives should not just keep > hammering the lame delegations when they've gotten a REFUSED > response. Sorry for being late in the discussion but draft-ietf-dnsop-extended-error-06 has a code to make REFUSED crystal-clear: 4.4.1. REFUSED Extended DNS Error Code 1 - Lame An authoritative server that receives a query (with the RD bit clear) for a domain for which it is not authoritative SHOULD include this EDE code in the SERVFAIL response. A resolver that receives a query (with the RD bit clear) SHOULD include this EDE code in the REFUSED response. Implementations should set the R flag in this case (another nameserver or resolver might not be lame). _______________________________________________ DNSOP mailing list DNSOP@ietf.org https://www.ietf.org/mailman/listinfo/dnsop