<div dir="ltr">Returning NOTIMP may confuse resolvers as it is not clear "what is not implemented". A NOTIMP response to an ANY query with EDNS0 option could cause a retry-without-EDNS0 query, or mislead the resolver to believe that the nameserver does not support EDNS0.<div><br></div><div>Yunhong</div></div><div class="gmail_extra"><br><div class="gmail_quote">On Fri, Mar 6, 2015 at 2:10 PM, Paul Vixie <span dir="ltr"><<a href="mailto:paul@redbarn.org" target="_blank">paul@redbarn.org</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">
<div bgcolor="#FFFFFF" text="#000000"><br>
<br>
Jared Mauch wrote:
<blockquote type="cite">
<div style="font-size:15px" lang="x-unicode"><blockquote type="cite" style="color:#000000"><span class="">
<pre><span>> </span>On Mar 6, 2015, at 11:02 AM, Olafur Gudmundsson <a href="mailto:ogud@ogud.com" target="_blank"><ogud@ogud.com></a> wrote:
<span>> </span>
</pre>
</span><span class=""><pre><span>> </span>
<span>> </span>By announcing this we are hoping that anyone running un-patched qmail will fix it.
</pre></span></blockquote><span class=""><pre>I’m guessing there will be no change.</pre></span></div>
</blockquote>
<br>
right. most of us blocked IDENT (without ICMP, to force the far end into
its longest possible state-holding timeout period) in order to
communicate the offensive futility of a protocol that asked an initiator
to help in any way to verify the identity behind some other connection
emanating from that same initiator, and the result was not widespread
"IDENT sucks, i'm turning it off", but rather, further ignorance and
more bliss.<br>
<br>
QMAIL users are already accustomed to frequent mystery failures. no
matter how many authority servers turn off ANY queries, there will be no
patching of QMAIL and no migration of QMAIL operators to other
platforms.<br>
<br>
the interesting part of this game will be when mozilla firefox's users
start switching back to Chrome again because the DNS community's immune
response to the recent QTYPE=ANY change hits that browser right between
the eyes. perhaps they'll switch MPR (mozilla portable runtime) to the
newer <a href="http://getdnsapi.net/" target="_blank">"http://getdnsapi.net/"</a> tech in order to stem their losses? anyway
i'm going to stock up on popcorn so as to enjoy watching this show.<span class="HOEnZb"><font color="#888888"><br>
<br>
<div>-- <br>Paul Vixie<br>
</div>
</font></span></div>
<br>_______________________________________________<br>
dns-operations mailing list<br>
<a href="mailto:dns-operations@lists.dns-oarc.net">dns-operations@lists.dns-oarc.net</a><br>
<a href="https://lists.dns-oarc.net/mailman/listinfo/dns-operations
dns-jobs" target="_blank">https://lists.dns-oarc.net/mailman/listinfo/dns-operations<br>
dns-jobs</a> mailing list<br>
<a href="https://lists.dns-oarc.net/mailman/listinfo/dns-jobs" target="_blank">https://lists.dns-oarc.net/mailman/listinfo/dns-jobs</a><br></blockquote></div><br></div>