|
|
|
|
|
by buffrr
1647 days ago
|
|
Something to consider in the future is implementing RFC9102[0] which is an experimental TLS extension for embedding the DNSSEC chain this should significantly improve TTFB. It'll still need to request the DS record/trust anchor from the p2p client. [0] https://www.rfc-editor.org/rfc/rfc9102.html |
|
https://blog.apnic.net/2019/05/27/dns-oarc-30-bad-news-for-d...
An explainer:
https://news.ycombinator.com/item?id=20026572