On 08/11/2022 11.33, Mark Andrews wrote:
Filtering .alt in recursive servers should be a MUST NOT. [...]
It would be nice to define this *in RFCs* somewhat uniformly for *all* the different special-use names.
There's this unfortunate conflict between blocking and not blocking: total prevention of leaks, providing DNSSEC proofs, and simplicity (as "knowing whole root" can be a non-trivial implementation change).
--Vladimir
_______________________________________________ DNSOP mailing list DNSOP@ietf.org https://www.ietf.org/mailman/listinfo/dnsop