Re: [dnsext] draft-vixie-dnsext-resimprove - NXDOMAIN for emptynon-terminals

Edward Lewis <Ed.Lewis@neustar.biz> Tue, 29 March 2011 13:35 UTC

Return-Path: <Ed.Lewis@neustar.biz>
X-Original-To: dnsext@core3.amsl.com
Delivered-To: dnsext@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 94FEA3A6916 for <dnsext@core3.amsl.com>; Tue, 29 Mar 2011 06:35:33 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.573
X-Spam-Level:
X-Spam-Status: No, score=-102.573 tagged_above=-999 required=5 tests=[AWL=0.026, BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id rl00D-Q9JZ6z for <dnsext@core3.amsl.com>; Tue, 29 Mar 2011 06:35:32 -0700 (PDT)
Received: from stora.ogud.com (stora.ogud.com [66.92.146.20]) by core3.amsl.com (Postfix) with ESMTP id 5B6353A6917 for <dnsext@ietf.org>; Tue, 29 Mar 2011 06:35:32 -0700 (PDT)
Received: from Work-Laptop-2.local (gatt.md.ogud.com [10.20.30.6]) by stora.ogud.com (8.14.4/8.14.4) with ESMTP id p2TDb6iv063973; Tue, 29 Mar 2011 09:37:06 -0400 (EDT) (envelope-from Ed.Lewis@neustar.biz)
Received: from [10.31.200.119] by Work-Laptop-2.local (PGP Universal service); Tue, 29 Mar 2011 09:37:07 -0400
X-PGP-Universal: processed; by Work-Laptop-2.local on Tue, 29 Mar 2011 09:37:07 -0400
Mime-Version: 1.0
Message-Id: <a06240800c9b78d52751f@[10.31.200.116]>
In-Reply-To: <8EA8D1A36B8F4968ABE973C39CA5E0E0@local>
References: <alpine.LSU.2.00.1103281507410.5244@hermes-1.csi.cam.ac.uk> <8EA8D1A36B8F4968ABE973C39CA5E0E0@local>
Date: Tue, 29 Mar 2011 09:27:12 -0400
To: dnsext@ietf.org
From: Edward Lewis <Ed.Lewis@neustar.biz>
Content-Type: text/plain; charset="us-ascii"; format="flowed"
X-Scanned-By: MIMEDefang 2.68 on 10.20.30.4
Cc: ed.lewis@neustar.biz
Subject: Re: [dnsext] draft-vixie-dnsext-resimprove - NXDOMAIN for emptynon-terminals
X-BeenThere: dnsext@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: DNS Extensions working group discussion list <dnsext.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/dnsext>, <mailto:dnsext-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dnsext>
List-Post: <mailto:dnsext@ietf.org>
List-Help: <mailto:dnsext-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsext>, <mailto:dnsext-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 29 Mar 2011 13:35:33 -0000

At 22:29 +0100 3/28/11, George Barwood wrote:

>I'd also like to see the standard updated to allow resolvers to infer
>NoData conditions from NSEC/NSEC3 records ( the standard does not exactly
>forbid this at present, but there is discouraging language ).

http://www.ietf.org/mail-archive/web/dnsext/current/msg10820.html

One motivation is to pursue "tricks" like RFC 4470 but applied to the 
type bitmap.  A signer may decide not to include all types in the 
NSEC it hands out.  Or the answering server will be synthesizing the 
answer dependent on the query.

By enlarging the role of caches, the authoritative server choices are shrunk.

-- 
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
Edward Lewis
NeuStar                    You can leave a voice message at +1-571-434-5468

Me to infant son: "Waah! Waah! Is that all you can say?  Waah?"
Son: "Waah!"