[153060] in North American Network Operators' Group
Re: NXDomain remapping, DNSSEC, Layer 9, and you.
daemon@ATHENA.MIT.EDU (Randy Bush)
Tue May 29 05:59:26 2012
Date: Tue, 29 May 2012 18:58:47 +0900
From: Randy Bush <randy@psg.com>
To: Tony Finch <dot@dotat.at>
In-Reply-To: <alpine.LSU.2.00.1205291050540.5807@hermes-2.csi.cam.ac.uk>
Cc: North American Network Operators' Group <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
> I expect there will be a depressingly large amount of DNS-over-TLS in
> the future in order to bypass broken ALGs.
there may be a lot of foo-over-https to bypass broken nats in the core,
and the edge, and whatever restrictive middleboxes political disfunction
creates.
because of st00pidity, we will go up a layer to try to reestablish end
to end.
randy