On Wed, Jul 12, 2017 at 12:00:43PM +0100, Tony Finch wrote:
> A particular instance of this is Unbound with "harden-referral-path"
> enabled - https://unbound.net/documentation/unbound.conf.html

And I believe this was because of the suggestions in RFC 5452.  Even
at the time I remember some thinking that this could result in a
different attack path, but I haven't gone back to look at my archives.


