Dangerous Labels in DNS and E-mail https://www.ietf.org/archive/id/draft-dkg-intarea-dangerous-labels-01.html
- privacy への配慮ということだが、毒盛耐性の強化にもなりそう。
-- ToshinoriMaeno 2015-09-19 05:04:19
4. Other advantages
- The main goal of qname minimisation is to improve privacy, by sending less data. However, it may have other advantages. For instance, if a root name server receives a query from some resolver for A.CORP followed by B.CORP followed by C.CORP, the result will be three NXDOMAINs, since .CORP does not exist in the root zone. Under query minimization, the root name servers would hear only one question (for
- CORP itself) to which they could answer NXDOMAIN, thus opening up a negative caching opportunity in which the full resolver could know a priori that neither B.CORP or C.CORP could exist. Thus in this common case the total number of upstream queries under query minimisation would be counter-intuitively less than the number of queries under the traditional iteration (as described in the DNS standard).
- Domain Name System (DNS) Cookies