On 08/11/2022 11.33, Mark Andrews wrote:
Filtering .alt in recursive servers should be a MUST NOT.
[...]

It would be nice to define this *in RFCs* somewhat uniformly for *all* the different special-use names.

There's this unfortunate conflict between blocking and not blocking: total prevention of leaks, providing DNSSEC proofs, and simplicity (as "knowing whole root" can be a non-trivial implementation change).

--Vladimir
_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to