[dns-operations] CloudFlare policy on ANY records changing

Edward Lewis edward.lewis at icann.org
Fri Mar 6 16:31:01 UTC 2015


On 3/6/15, 11:11, "Paul Wouters" <paul at cypherpunks.ca> wrote:

>On Fri, 6 Mar 2015, Olafur Gudmundsson wrote:
>
>> We will be depreciating support for ANY queries and return NOTIMP in
>>the near future 
>> https://blog.cloudflare.com/deprecating-dns-any-meta-query-type/
>> 
>> ID proposing this behavior will be forthcoming
>
>Can't you wait for eastlake cookies and only allow it on source address
>verified queries (TCP or a send an eastlake cookie) ?
>
>That would cause less breakage.

Would not address this, quoting their blog post:

"Attempting to handle ANY queries creates enormous complexity in our DNS
server code base. It's almost impossible to generate a proper response,
anyway. Consider load-balancing, geoip, CNAME flattening features, and
on-the-fly answer generation."

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4604 bytes
Desc: not available
URL: <https://lists.dns-oarc.net/pipermail/dns-operations/attachments/20150306/8fb7505e/attachment.bin>


More information about the dns-operations mailing list