[dns-operations] [Ext] Re: DNAME, authoritative name servers, and the return code for non-existing domains

Edward Lewis edward.lewis at icann.org
Tue May 28 20:35:58 UTC 2019


On 5/28/19, 19:17, "dns-operations on behalf of Viktor Dukhovni" <dns-operations-bounces at dns-oarc.net on behalf of ietf-dane at dukhovni.org> wrote:
   
>    The answer from anytld.apnic.net is correct...
   
>    Similarly, the answer from d.dns.tw. is also correct...
    
All the servers are right.  the "h" and "anytld" servers evidently "chase" to the end see the authority section, and the others "chase" only within the first zone.  It seems to be a matter of how aggressive the particular nameserver code is (or is configured to be).

(See: $ for ns in `dig xn--kprw13d. ns +short`; do echo $ns ;dig @$ns example.xn--kprw13d. ns +dnssec; done)





More information about the dns-operations mailing list