[62410] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: DNS anycast considered harmful (was: .ORG problems this evening)

daemon@ATHENA.MIT.EDU (Todd Vierling)
Thu Sep 18 08:16:42 2003

Date: Thu, 18 Sep 2003 08:12:26 -0400 (EDT)
From: Todd Vierling <tv@duh.org>
To: Stephane Bortzmeyer <bortzmeyer@nic.fr>
Cc: Iljitsch van Beijnum <iljitsch@muada.com>, nanog@merit.edu
In-Reply-To: <20030918120823.GB5393@nic.fr>
Errors-To: owner-nanog-outgoing@merit.edu


On Thu, 18 Sep 2003, Stephane Bortzmeyer wrote:

: BIND does it but what about Microsoft cache/forwarder? At RIPE 45 (you
: were there), a talk by people at CAIDA showed that A.root-servers.net
: received twice as much traffic as the other root name servers since it
: is just the first one listed...

There's an easy fix to that particular situation:  Make the first (or first
two) listed servers anycast, and the rest unicast.

That gains the distributed nature of anycast to deal with crap like this,
while keeping the ability for DNS servers to find one that is *up*.

-- 
-- Todd Vierling <tv@duh.org> <tv@pobox.com>

home help back first fref pref prev next nref lref last post