Hacker News new | ask | show | jobs
by JdeBP 2710 days ago
No. It means that content DNS servers (and their concomitant network infrastructure) must either support EDNS properly or ignore it properly. The halfway house of having clients fall back to re-trying without EDNS, because some bad servers failed to send replies (or the network infrastructure that they communicated over failed to send on those replies) in response to EDNS queries, is going away.

And about time, too.

* http://jdebp.eu./FGA/dns-edns0-and-firewalls.html