dkim-ops
[Top] [All Lists]

Re: [dkim-ops] DKIM - ATPS

2010-09-22 15:38:34
Murray S. Kucherawy wrote:

This shortens specific records, but doesn't shorten the overall answer.  
If multiple TXT records are found, they are all packed into the same single 
DNS reply.  This actually consumes more space than a single large TXT record 
does.  
If TCP upgrade of the DNS query is not possible, truncation can occur and 
some 
of the replies can get dropped, so you could only get a (basically random) 
subset of your ASL, leading to false negatives.

Murray,

Any modern DNS client that is not properly doing a UDP first, then 
follow up with a TCP stream request for a truncation response, is not 
worth talking about and any site using this sort of inadequate DNS 
client software in this modern age will already have all sorts of 
other problems especially if it wants to support SPF or any other 
existing TXT based queries with large values.

IMTO, a proper DNS client is a natural operational requirement. In 
addition, any operator utilizing the protocol with a large data set 
will be informed packing the TXT record would be the recommendation to 
help minimize traffic.  Our DNS record manager will assist with this.

IMTO, what is a "waste" is the slack space with DNS queries with no 
data or information in it

So I personally do not think this will be an issue.

-- 
Hector Santos, CTO
http://www.santronics.com
http://santronics.blogspot.com


_______________________________________________
dkim-ops mailing list
dkim-ops(_at_)mipassoc(_dot_)org
http://mipassoc.org/mailman/listinfo/dkim-ops

<Prev in Thread] Current Thread [Next in Thread>