From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mail-yk0-f179.google.com (mail-yk0-f179.google.com [209.85.160.179]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by huchra.bufferbloat.net (Postfix) with ESMTPS id DB0C021F38A for ; Thu, 8 May 2014 02:32:58 -0700 (PDT) Received: by mail-yk0-f179.google.com with SMTP id 19so1900701ykq.10 for ; Thu, 08 May 2014 02:32:57 -0700 (PDT) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:date:message-id:subject:from:to :content-type; bh=3asdpTKg7MyF3nXj+Xx/1vP1Z9OqfDHi0wixBXXQIkY=; b=iHA2Kj5ff27kCPNa1VEvhPx8zCi1IxZHoaO8CE2LbIt9FeDxvdNS30l9fh33ejZKWp 4SdNQe9bvjjGdNzJJ3UCMYwKPIQGH/adF7CGjtTr56riAkgydhE4p1ltR+0cGLPboLrh gab2ZCesxYfCKBZDXF6yIXpYMTEqRj26xPh94FYd/WOEJW2/PE18U1z6fdo5X74CP2mG JPZf8aOoI5n2ziayxcKyQ/BtlQzsi9Ur7l40zks9zAGo/S5kj5mRJSCRSgIwxOginepx Xp1XKlb9/khIiPUZopyIYXVnFDlcNL2UqZVbWAUbK/EXZZANqZgKWw82ctKaHg1BO9zZ 78lg== X-Gm-Message-State: ALoCoQm2c3UzKZHuZ7j8tbEmYILgHJ9lD4omiHJGPZM025GWD30UAA1+FwyBQZGIlM0xPXUQQewC MIME-Version: 1.0 X-Received: by 10.236.159.67 with SMTP id r43mr3559122yhk.50.1399541577667; Thu, 08 May 2014 02:32:57 -0700 (PDT) Received: by 10.170.140.136 with HTTP; Thu, 8 May 2014 02:32:57 -0700 (PDT) X-Originating-IP: [213.189.36.98] Date: Thu, 8 May 2014 11:32:57 +0200 Message-ID: From: Maciej Soltysiak To: "cerowrt-devel@lists.bufferbloat.net" Content-Type: multipart/alternative; boundary=20cf30434c649606ed04f8e02af4 Subject: [Cerowrt-devel] "DNSSEC considered harmful" X-BeenThere: cerowrt-devel@lists.bufferbloat.net X-Mailman-Version: 2.1.13 Precedence: list List-Id: Development issues regarding the cerowrt test router project List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 08 May 2014 09:32:59 -0000 --20cf30434c649606ed04f8e02af4 Content-Type: text/plain; charset=UTF-8 Hi, I read a twitter conversation last night where somebody said DNSSEC is harmful. I asked why and I got this littany of issues: http://ianix.com/pub/dnssec-outages.html I was blown away not only by the sheer evidence of outages, but especially by the quotes in last sections: Miscellaneous and What a mess. I don't know, have a look, I just wanted to share as I wasn't aware of things that didn't go well with DNSSEC. I'm not suggesting anything re Cerowrt here. Best regards, Maciej --20cf30434c649606ed04f8e02af4 Content-Type: text/html; charset=UTF-8 Content-Transfer-Encoding: quoted-printable
Hi,

I read a twitter conversati= on last night where somebody said DNSSEC is harmful. I asked why and I got = this littany of issues: http://ianix.com/pub/dnssec-outages.html

I was blown away not only by the sheer evidence of outages, but e= specially by the quotes in last sections: Miscellaneous and What a mess.
I don't know, have a look, I just wanted to share as I wasn&= #39;t aware of things that didn't go well with DNSSEC. I'm not sugg= esting anything re Cerowrt here.

Best regards,
Maciej

--20cf30434c649606ed04f8e02af4--