
|
Input from WG Mark A.: separate the hash namespace. i.e. the ownername of NSEC3 appear to be in the root zone. The RDATA contains the zone name. This allows NSEC3 to apply to very VERY long owner names. Nice idea, but it has side issues we don’t want to think about. (impact on root-servers, etc, etc). We are not planning to change the draft to incorporate this. Really long names can also be handled through DNAME. |