> The draft discusses about the effect of TTL on the vulnerability. This


You are right that the TTL features in the calculations - in degenerate
cases the TTL revolves into the network rtt, as the draft notes.

To not overly broaden the document, I'm trying to stay within the bounds of
recommendations outside of the actual payload of DNS packets, and focus on
port numbers, id choices etc.


