[dns-operations] DS-side NSEC query

Peter van Dijk peter.van.dijk at powerdns.com
Fri Jul 29 15:00:34 UTC 2016

Hello Peter,

On 29 Jul 2016, at 16:40, Peter Koch wrote:

> On Sat, Jul 30, 2016 at 12:22:40AM +1000, Mark Andrews wrote:
>> There are no rules for what is the "correct" answer.  Additionally it 
>> is
>> pretty pointless to query for NSEC records.
> algorithm 4.3.2 in RFC 1034 would suggest that authoritative data
> takes precedence over a delegation.  Hindsight, admittedly.

Going by that logic, an MX query should also not give out the 
delegation. This is obviously not the way to go!

Kind regards,
Peter van Dijk
PowerDNS.COM BV - https://www.powerdns.com/

More information about the dns-operations mailing list