Problem
DNSSEC deployments already live near operational boundaries. Larger signatures and keys make those boundaries more visible.
Technical record
The lab is organized around controlled experiments: change one dimension, capture the behavior, and compare resolver and network responses under repeatable conditions.
Operational scope
The lab records packet size, truncation, fragmentation, resolver choices, retries, and network responses under controlled input changes.