Hacker News new | ask | show | jobs
by drdaeman 3576 days ago
This seem to bring up the zone enumeration issue. Except for now, approaches like used in NSEC3 won't help at all.

"Private" DNS entries matter, when one wouldn't want to remember IPs (one'd rather remember "correct-horse-battery-staple.int.example.org"), but also wouldn't want to disclose the addresses used internally and aren't exposed to the end-users (because DDoS).