DNSSEC and ISPs faking DNS responses

On 14 Nov 2015, at 7:49, David Conrad wrote:

> My point was that the vast majority of those affected by this would 
> likely not be in a position to install a validating resolver on their 
> device.

Correct.  Most folks on this list can and will do it if they deem it 
necessary; but most folks on this list are not representative of the 
global user base.

Roland Dobbins <rdobbins at arbor.net>