From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mail-qa0-x231.google.com (mail-qa0-x231.google.com [IPv6:2607:f8b0:400d:c00::231]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by huchra.bufferbloat.net (Postfix) with ESMTPS id 9A14921F113 for ; Wed, 29 Jan 2014 14:10:19 -0800 (PST) Received: by mail-qa0-f49.google.com with SMTP id w8so3291431qac.36 for ; Wed, 29 Jan 2014 14:10:18 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type:content-transfer-encoding; bh=FuzC4WTUH3GMYUkqozcnFLYWMjtoEWJ7+qXNZWI71mg=; b=DgmLo++A2TaaZKgcYvLlj+BS10zlR1OdLLMtdKt2caNpwEKR5JAi1LqGYIlxkx8Rdr pD0sZuYP6S4QBiEgyjQ9kggdG18TmkWPPX/wncyvuekyX9AvjUeLkl8mvPzNrMId7XO2 yPa9qsZ7B5yV8pK1HyVfeYLJVask4NNqmI3IR+Yu5Kj9GRIFJLO7PMOBCzlePC9zq9D4 1EAEvrpji0j5FxLWjJr6CbhZQGeJrOO78SZTBeacvydGiB5JosPEbU0wxUTWGeW3UwFc kgd6m0tDvU3WJNMhg/yXilAjEPb2v486W1KnLiXpoXvW5bMjmOJzVnmSXiS3AYyGRQ76 ydIA== MIME-Version: 1.0 X-Received: by 10.224.28.197 with SMTP id n5mr13266643qac.43.1391033418616; Wed, 29 Jan 2014 14:10:18 -0800 (PST) Received: by 10.224.42.70 with HTTP; Wed, 29 Jan 2014 14:10:18 -0800 (PST) In-Reply-To: <87ppna30qx.fsf@alrua-x1.kau.toke.dk> References: <87ppna30qx.fsf@alrua-x1.kau.toke.dk> Date: Wed, 29 Jan 2014 14:10:18 -0800 Message-ID: From: Dave Taht To: =?ISO-8859-1?Q?Toke_H=F8iland=2DJ=F8rgensen?= Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable Cc: dnsmasq-discuss , "cerowrt-devel@lists.bufferbloat.net" Subject: Re: [Cerowrt-devel] coping with ipv6 source routing and dns X-BeenThere: cerowrt-devel@lists.bufferbloat.net X-Mailman-Version: 2.1.13 Precedence: list List-Id: Development issues regarding the cerowrt test router project List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 29 Jan 2014 22:10:19 -0000 On Wed, Jan 29, 2014 at 2:02 PM, Toke H=F8iland-J=F8rgensen = wrote: > Dave Taht writes: > >> works. yea! no more nat holes for ipv4 dns. > > Eh? Nat holes for DNS? What exactly are you doing, and what is your > setup? :) > > -Toke 1 case: Since most forwarders can't be trusted to return NXDOMAIN, an internal email box at several of my sites runs dns directly. A few dnsrbl providers offer ipv6 transport, so it's possible. One advantage of dnssec is we get NXDOMAIN working again, so a forwarder can be used... --=20 Dave T=E4ht Fixing bufferbloat with cerowrt: http://www.teklibre.com/cerowrt/subscribe.= html