[dns-operations] DS-side NSEC query

Peter Koch pk at denic.de
Fri Jul 29 14:40:36 UTC 2016


On Sat, Jul 30, 2016 at 12:22:40AM +1000, Mark Andrews wrote:
> 
> There are no rules for what is the "correct" answer.  Additionally it is
> pretty pointless to query for NSEC records.

algorithm 4.3.2 in RFC 1034 would suggest that authoritative data
takes precedence over a delegation.  Hindsight, admittedly.

-Peter



More information about the dns-operations mailing list