Auteur: Viktor Dukhovni Datum: Aan: exim-dev Onderwerp: Re: [exim-dev] feature request for exim: query DNSBL providers' DNS
servers directly
> On Sep 11, 2017, at 6:35 PM, Phil Pennock <pdp@???> wrote:
>
> For the DNSSEC folks, being able to affirm validation
> without trusting across-the-wire that AD bit is tamper-proof is nice.
DNSSEC in stub resolvers is rather nice in theory, however, in
practice DNSSEC needs to happen in the iterative resolver. See: