[95580] in North American Network Operators' Group
redirect (Re: On-going Internet Emergency and Domain Names )
daemon@ATHENA.MIT.EDU (Paul Vixie)
Sat Mar 31 17:13:02 2007
From: Paul Vixie <paul@vix.com>
To: nanog@merit.edu
In-Reply-To: Your message of "Sat, 31 Mar 2007 21:42:13 +0200."
<87648hp5d6.fsf@mid.deneb.enyo.de>
Date: Sat, 31 Mar 2007 21:11:40 +0000
Errors-To: owner-nanog@merit.edu
> > since malware isn't breaking dns, and since dns not a vector per se,
> > the idea of changing dns in any way to try to control malware
> > strikes me as a way to get dns to be broken in more places more
> > often.
>
> Well, once more people learn about DLV (especially the NS override
> extension that has been requested by zone operators), more and more
> questions will pop up why we can't do this for NS records they don't
> like for some reason. The genie is out of the bottle, I'm afraid.
i'm going to fwd this to dns-operations@lists.oarci.net and answer it there,
since this is now far afield of "can i type that into an IOS prompt?".