[63401] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Will reverting DNS wildcard have any adverse affects?

daemon@ATHENA.MIT.EDU (bmanning@karoshi.com)
Sat Oct 4 11:30:26 2003

From: bmanning@karoshi.com
To: chopin@sgh.waw.pl (Piotr KUCHARSKI)
Date: Sat, 4 Oct 2003 08:29:45 -0700 (PDT)
Cc: nanog@nanog.org
In-Reply-To: <20031004134852.GA18494@sgh.waw.pl> from "Piotr KUCHARSKI" at Oct 04, 2003 03:48:52 PM
Errors-To: owner-nanog-outgoing@merit.edu


> 
> 
> On Fri, Oct 03, 2003 at 05:34:07PM -0700, bmanning@karoshi.com wrote:
> > 	ask yourself how many DNS admins are going to go pull out
> > 	the "-delegation" stanzas from their configs?  Or that
> > 	will use them to lie about other delegations that use wildcards
> > 	as long as that code is still available?  ...  
> 
> And what possible problems are you expecting with leaving
> zone "com" { type delegation-only; };
> zone "net" { type delegation-only; };
> in the configuration?
> 
> They should be delegation-only in any case, shouldn't they?

	well, thats up to the zone admin. :)
	my concern is mostly along the lines of folks who will do things like:

	zone "waw.pl" { type delegation-only; };

	to random zones that they think -SHOULD- be delegation-only, regardless
	of what the zone admin specifies.

	
> 
> p.
> 
> -- 
> Beware of he who would deny you access to information, for in his
> heart he dreams himself your master.   -- Commissioner Pravin Lal
> http://nerdquiz.sgh.waw.pl/  -- polska wersja quizu dla nerdów ;)
> 


home help back first fref pref prev next nref lref last post