<div dir="ltr"><div class="gmail_default" style="font-family:arial black,sans-serif;color:#073763">Hi Josh</div><div class="gmail_default" style="font-family:arial black,sans-serif;color:#073763">Thanks for your reply.</div><div class="gmail_default" style="font-family:arial black,sans-serif;color:#073763">Your implementation is exactly what I was thinking of.</div><div class="gmail_default" style="font-family:arial black,sans-serif;color:#073763">Having a DNAME record in the TLD,  original SLD is dnssec signed.<br></div><div class="gmail_default" style="font-family:arial black,sans-serif;color:#073763"><br></div><div class="gmail_default" style="font-family:arial black,sans-serif;color:#073763">You wrote "We don't see many issues with it.."</div><div class="gmail_default" style="font-family:arial black,sans-serif;color:#073763">Can you say what kind of issues you had?</div><div class="gmail_default" style="font-family:arial black,sans-serif;color:#073763"><br></div><div class="gmail_default" style="font-family:arial black,sans-serif;color:#073763">Thanks for your help!<br></div><div class="gmail_default" style="font-family:arial black,sans-serif;color:#073763"><br></div><div class="gmail_default" style="font-family:arial black,sans-serif;color:#073763"><br></div><div class="gmail_default" style="font-family:arial black,sans-serif;color:rgb(7,55,99);text-align:left"><br></div><div class="gmail_default" style="font-family:arial black,sans-serif;color:rgb(7,55,99);text-align:left"><br clear="all"></div><div><div dir="rtl" class="gmail_signature" data-smartmail="gmail_signature"><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div><div style="text-align:left"></div><div dir="rtl" style="color:rgb(136,136,136);text-align:left"><font size="2"><span style="font-family:tahoma,sans-serif"><span style="color:rgb(153,153,153)"></span></span></font></div><div dir="rtl" style="color:rgb(136,136,136);text-align:left"><font size="2"><span style="font-family:tahoma,sans-serif"><span style="color:rgb(153,153,153)">מאיר קראוסהר<b> | </b></span></span></font><font size="2"><span style="font-family:tahoma,sans-serif"><span style="color:rgb(153,153,153)"><span><font size="2"><span style="font-family:tahoma,sans-serif"><span style="font-family:verdana,sans-serif"><span style="color:rgb(153,153,153)"><b>Meir Kraushar</b></span></span><span style="color:rgb(153,153,153)">  </span></span></font></span></span></span></font></div><div dir="rtl" style="color:rgb(136,136,136);text-align:left"><font size="2"><span style="font-family:tahoma,sans-serif"><span style="color:rgb(69,129,142)">איגוד האינטרנט הישראלי  | </span><span style="color:rgb(153,153,153)"><span style="color:rgb(69,129,142)"><b>Israel Internet Association ISOC-IL</b></span><br></span></span></font></div><div style="color:rgb(136,136,136);text-align:left"><font size="2"><span style="font-family:tahoma,sans-serif"><span style="color:rgb(153,153,153)"></span></span></font></div><div style="text-align:left"><div><font size="2"><span style="font-family:tahoma,sans-serif"><span style="color:rgb(11,83,148)"></span></span></font><a href="https://www.isoc.org.il" target="_blank"><img src="http://www.isoc.org.il/wp-content/uploads/2016/04/isoc_logo-Heb-300x150.png" alt="איגוד האינטרנט הישראלי - ISOC-IL" width="200" height="100" border="0"></a></div></div><span style="color:rgb(11,83,148)"><br></span></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div><br></div><br><div class="gmail_quote"><div dir="ltr" class="gmail_attr">On Mon, 30 Mar 2020 at 16:04, Josh Simpson <<a href="mailto:josh@internetnz.net.nz">josh@internetnz.net.nz</a>> wrote:<br></div><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex">.nz uses DNAME for one of the 2nd level registration spaces <a href="http://xn--mori-qsa.nz" rel="noreferrer" target="_blank">māori.nz</a> > <a href="http://maori.nz" rel="noreferrer" target="_blank">maori.nz</a><br>
<br>
<a href="http://xn--mori-qsa.nz" rel="noreferrer" target="_blank">xn--mori-qsa.nz</a>. 86400 IN DNAME <a href="http://maori.nz" rel="noreferrer" target="_blank">maori.nz</a>.<br>
<br>
Details at <a href="https://docs.internetnz.nz/features/idn/?highlight=dname" rel="noreferrer" target="_blank">https://docs.internetnz.nz/features/idn/?highlight=dname</a><br>
<br>
We don't see many issues with it as it's not at the registrant level,<br>
and registrants normally configure their server software as they<br>
intend it to be used, fully IDN or not, which they publish externally.<br>
<br>
Josh<br>
<br>
<br>
-- <br>
<br>
Josh Simpson<br>
.nz Operations Manager<br>
InternetNZ  |  Ipurangi Aotearoa<br>
<br>
_______________________________________________<br>
dns-operations mailing list<br>
<a href="mailto:dns-operations@lists.dns-oarc.net" target="_blank">dns-operations@lists.dns-oarc.net</a><br>
<a href="https://lists.dns-oarc.net/mailman/listinfo/dns-operations" rel="noreferrer" target="_blank">https://lists.dns-oarc.net/mailman/listinfo/dns-operations</a><br>
</blockquote></div>