[Dnssec-deployment] DNSSEC aware recursive name servers

Tony Finch dot at dotat.at
Tue Aug 9 15:16:04 EDT 2011

Andrew Sullivan <ajs at shinkuro.com> wrote:
> That's the one I was thinking about.  Surely as soon as we have a
> protocol for selecting a DNS server, it's a short hop from that to,
> "Prefer the one that works reliably," where "reliably" is defined
> according to local preferences.

Surely the wireless access point with broken DNS will send a DHCP option
telling clients to use its broken DNS because its local preference says it
"works reliably".

f.anthony.n.finch  <dot at dotat.at>  http://dotat.at/
