bortzmeyer, 2 months ago French draft-ietf-dnsop-compact-denial-of-existence Formerly "black lies". For #DNSSEC dynamic signers. No RFC standardize the reply to metatypes (like NXNAME). Most return FORMERR, PowerDNS returns SERVFAIL. But biggest issue, IMHO, should we require NXDOMAIN for non-DNSSEC clients? (NS1 returns NOERROR in any case.) (Tested at the hackathon https://github.com/IETF-Hackathon/ietf119-project-presentations/blob/main/ietf-119-hackathon-DNS.pdf ) #IETF119
draft-ietf-dnsop-compact-denial-of-existence Formerly "black lies". For #DNSSEC dynamic signers.
No RFC standardize the reply to metatypes (like NXNAME). Most return FORMERR, PowerDNS returns SERVFAIL.
But biggest issue, IMHO, should we require NXDOMAIN for non-DNSSEC clients? (NS1 returns NOERROR in any case.)
(Tested at the hackathon https://github.com/IETF-Hackathon/ietf119-project-presentations/blob/main/ietf-119-hackathon-DNS.pdf )
#IETF119