[26064] in bugtraq

home help back first fref pref prev next nref lref last post

Re: BIND 9.2.1 patch, multiple RR's for singleton types.

daemon@ATHENA.MIT.EDU (der Mouse)
Thu Jul 4 15:09:58 2002

Date: Thu, 4 Jul 2002 09:54:43 -0400 (EDT)
From: der Mouse <mouse@Rodents.Montreal.QC.CA>
Message-Id: <200207041354.JAA21105@Sparkle.Rodents.Montreal.QC.CA>
Mime-Version: 1.0
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: 8bit
To: bugtraq@securityfocus.com
In-Reply-To: <14589.1025639383@gromit.rfc1035.com>

>> 	fuzzy IN CNAME www.snuggie.com.
>>            IN CNAME www.r-9.net.

> The real solution to the question you pose is to fix the underlying
> problem at source (forgive the pun).  Get rid of the illegal multiple
> CNAMEs.  For the example above, just provide two A records for fuzzie
> that have the IP addresses of www.snuggie.com and ww.r-9.net.  And
> put some comments in the zone file and version control logs
> explaining what these RRs are for and why they are there.  This will
> save another maintenance headache for your eventual successor.

While creating a maintenance headache whenever www.snuggie.com and/or
www.r-9.net happen to modify the list of addresses they resolve to.

This "solution" creates problems of its own; it is no more a "real
solution" than the other.  The only real benefit I can see to it is
that it doesn't involve fixing the underlying lack and thus requires no
effort from the rest of the world, and even that is a benefit only to
that "rest of the world", not to the person you are offering it as a
"solution" to.

/~\ The ASCII				der Mouse
\ / Ribbon Campaign
 X  Against HTML	       mouse@rodents.montreal.qc.ca
/ \ Email!	     7D C8 61 52 5D E7 2D 39  4E F1 31 3E E8 B3 27 4B

home help back first fref pref prev next nref lref last post