[87279] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Gothcas of changing the IP Address of an Authoritative DNS Server

daemon@ATHENA.MIT.EDU (Steven M. Bellovin)
Tue Dec 13 16:30:11 2005

From: "Steven M. Bellovin" <smb@cs.columbia.edu>
To: Sam Crooks <anti.confidentiality.notices@gmail.com>
Cc: Eric Kagan <ekagan@axsne.com>, nanog@merit.edu,
	nanog-post@merit.edu
In-Reply-To: (Your message of "Tue, 13 Dec 2005 14:12:17 MST.")
             <9828b780512131312q220a5ea6x97a6167e33c654a0@mail.gmail.com> 
Date: Tue, 13 Dec 2005 16:28:59 -0500
Errors-To: owner-nanog@merit.edu


In message <9828b780512131312q220a5ea6x97a6167e33c654a0@mail.gmail.com>, Sam Cr
ooks writes:
>
>I would think you would want to drop your DNS record TTLs for all
>domains being moved to something very low several days before the
>switch-over period.

More precisely, you want to change the TTL on the NS records, which are 
in the parent zone.  If you're keeping the name but changing the 
address, worry about the A records, too.

		--Steven M. Bellovin, http://www.cs.columbia.edu/~smb



home help back first fref pref prev next nref lref last post