nanog mailing list archives

Re: NXDomain remapping, DNSSEC, Layer 9, and you.


From: Randy Bush <randy () psg com>
Date: Tue, 29 May 2012 18:58:47 +0900

I expect there will be a depressingly large amount of DNS-over-TLS in
the future in order to bypass broken ALGs.

there may be a lot of foo-over-https to bypass broken nats in the core,
and the edge, and whatever restrictive middleboxes political disfunction
creates.

because of st00pidity, we will go up a layer to try to reestablish end
to end.

randy


Current thread: