[166594] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Reverse DNS RFCs and Recommendations

daemon@ATHENA.MIT.EDU (Valdis.Kletnieks@vt.edu)
Fri Nov 1 10:16:21 2013

To: Masataka Ohta <mohta@necom830.hpcl.titech.ac.jp>
In-Reply-To: Your message of "Fri, 01 Nov 2013 16:03:56 +0900."
 <5273525C.5060908@necom830.hpcl.titech.ac.jp>
From: Valdis.Kletnieks@vt.edu
Date: Fri, 01 Nov 2013 10:15:26 -0400
Cc: nanog@nanog.org
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

--==_Exmh_1383315326_3257P
Content-Type: text/plain; charset=us-ascii

On Fri, 01 Nov 2013 16:03:56 +0900, Masataka Ohta said:
> It is a lot simpler and a lot more practical just to
> use shared secret between a CPE and a ISP's name server
> for TSIG generation.

Hmm.. Shared secret between a CPE you don't necessarily control
and your own DNS server?  This *will* get you a dartboard with
your picture on it at the ISP's help desk.

--==_Exmh_1383315326_3257P
Content-Type: application/pgp-signature

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.15 (GNU/Linux)
Comment: Exmh version 2.5 07/13/2001

iQIVAwUBUnO3fgdmEQWDXROgAQIIWQ/9EcX99Hqs6TIha7ieNqUk144NQN0/AEl1
44KhsWzvWB0EE9SGxJ1owfCkBj8Xb9aD6EwHOyAJT+F1ai7N3DUS/fherbnGgbW5
XUBzPrPcaqrhLFzuP1AuyuVO4wdWWFcMkiKpY5IAINMNyjEVtSwITc+1NmqJp4IL
XdcIi6bprkXmhK/hKNOOOJzc9jTxhIb1nLL/YhCbotgs2pubtKd67pwSccEVFRVV
THN2fD0910ms+dXdvP9XDvbqV1pT6el/+OIur+QBw13+/SN6n3RbAXwJwq85lHDM
Rj47CSPeoUYmbbAuOhL+De4vNvV0q3Ky0XCf5FTaAcHVbX19ArLnFkUq/QpxTFZ4
9WHxHZJmigrgC51y6gsJR+FBpfGd+tXqfpI2LSFwllH9C6TpS7VIHzCXwTeCoJa6
mBPa1nA8CUFcsXpfJx1Mft5wOCW6Q7po208DxasYU9Mhd7MwylY/p3ME3LLmLNZt
jXelo5qZO6GGKy3deGKwwVuYPg9s8XTQkjvnhMgeBcDGB0JR8g/esyx/wIvSwTT8
K023VNfpKmc+0HwMrEzTsznxLx5544eJh8/ih/dVfSyBeFRVg2+9lFxGuNq9fz16
1mnws51sw8/m6C+jLUSv5RseAJAt4CSINBh64NHeREXs/O8DNLvAET1JRj6In7GE
+0jzUGe9wdQ=
=bEvZ
-----END PGP SIGNATURE-----

--==_Exmh_1383315326_3257P--


home help back first fref pref prev next nref lref last post