[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
about Iljitsch's (M)NAT-PT
I'd like to see, in security considerations for instance, an analysis
of the DNS ALG over deployment of DNSSEC.
Please note:
- this applies to all proposals with a DNS ALG (so it is not directed
against Iljitsch's one :-)
- DNS is a bit more complex than just asking for an A or AAAA RR. For
instance what is the impact of the DNS ALG over a DNSSEC capable server
placed at the bad side (i.e., behind the NAT).
Thanks
Francis.Dupont@fdupont.fr