[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [dnsext] I-D Action:draft-ietf-dnsext-dns-tcp-requirements-01.txt
----- Original Message -----
From: "Doug Otis" <doug.mtview@gmail.com>
> If smaller key sizes become practical, why not permit exclusive
> operation of UDP within a known supported range?
To limit amplification attacks against 3rd parties?
If TCP is required, it seems logical to limit UDP responses to the
original size and deprecate the EDNS response buffer size mechanism.
I'm not sure if this is Ray's intention, but I think I agree with this.
I don't think this should be the end of it though, at risk of boring readers
with repetition, for which I apologise, I'm advocating either SCTP or something like
http://www.george-barwood.pwp.blueyonder.co.uk/DnsServer/QRP.htm
George