[dns-operations] Implementation of negative trust anchors?

Randy Bush randy at psg.com
Fri Aug 23 00:56:17 UTC 2013


> I'm still not convinced that the right answer is not to standardise,
> or not to write up a BCP

how about a wcp?  nancy regan was right.

i am still at the other end of the elephant.  why is the frelling
software on the farbled server not detecting that is has been farbled
and screaming loudly?  why is it not preventing most of these farblings
in the first place?

when mongolia tried to change key [alg] to one that was not in the root,
their software should not have done it.

do not be liberal in what you accept, this is the path to entropic
death.

randy, a naggumite



More information about the dns-operations mailing list