[dns-operations] Massive DNS poisoning attacks in Brazil

David Conrad drc at virtualized.org
Wed Oct 3 00:55:21 UTC 2012


On Oct 2, 2012, at 5:49 PM, Vernon Schryver <vjs at rhyolite.com> wrote:
> The only reasonable solution is to give stub resolvers some of the
> features of recursive resolvers including DNSSEC validation and caching
> to make the costs of DNSSEC tolerable.

Why not get rid of stub resolvers completely and simply use recursive resolvers?

Regards,
-drc




More information about the dns-operations mailing list