[DNSOP] Disclosure of Negative Trust Anchors in DNS Responses (draft-farrokhi-dnsop-ede-nta-00)

Joe Abley <[email protected]>
Newsgroups gmane.ietf.dnsop
Message-ID <[email protected]>
Hi all,

Babak, Sebastiaan and I put pen to paper and came up with the following:

https://datatracker.ietf.org/doc/draft-farrokhi-dnsop-ede-nta/

https://github.com/farrokhi/id-ede-nta (working copy)

The goal is to provide guidance about using a specific Extended DNS Error as an in-band signal that a Negative Trust Anchor is in effect in a resolver. It was inspired by the somewhat recent events with DE and the reaction to those events in 9.9.9.9 and 1.1.1.1.

We now have a code-point assigned for the EDE (33), and implementation is planned in 1.1.1.1.

This document is at most an informational document to act as a reference for the code-point assignment. It could be an individual submission; we don't necessarily see a need to engage the working group bureaucracy. However, the people on this list have a keen eye for detail and we would love to get some more review. If you have a chance to take a look, we'd appreciate it.

Thanks,


Joe
_______________________________________________
DNSOP mailing list -- [email protected]
To unsubscribe send an email to [email protected]
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.