[90740] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: wrt joao damas' DLV talk on wednesday

daemon@ATHENA.MIT.EDU (David Conrad)
Tue Jun 13 12:07:53 2006

In-Reply-To: <20060613154735.GA3007@isc.org>
Cc: nanog@merit.edu
From: David Conrad <drc@virtualized.org>
Date: Tue, 13 Jun 2006 09:07:28 -0700
To: "David W. Hankins" <David_Hankins@isc.org>
Errors-To: owner-nanog@merit.edu


Hi,

On Jun 13, 2006, at 8:47 AM, David W. Hankins wrote:
> Do you imagine that, if IANA/ICANN/USDOT/someone were told to
> implement a policy to sign the root, that they would have trouble
> identifying the owners of the TLD's reliably?

Yes.  And it isn't a question of signing the root -- that just makes  
it more ... fun.  It is a generic authentication problem that crops  
up anytime there is any change to the root.  Fortunately, the root  
community is relatively small and well defined and IANA has evolved  
processes that, while sub-optimal, do generally work.

> If so, wouldn't this problem already exist today in the information
> already present in the root zone?

Yes.  However, I believe you all are proposing to remove the  
"relatively small and well defined" component that helps IANA deal  
with the issue on a daily basis.  A hard problem.

Rgds,
-drc


home help back first fref pref prev next nref lref last post