[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
axfr-clarify supporting unauthorized users
[ post by non-subscriber. with the massive amount of spam, it is easy to
miss and therefore delete mis-posts. your subscription address is
54830374684695-namedroppers@sublist.cr.yp.to, please post from it or
fix subscription your subscription address! ]
Mark.Andrews@isc.org writes:
[ quoting RFC 1034 ]
> the secondary server must request a zone transfer via an AXFR request
> for the zone. The AXFR may cause an error, such as refused, but
> normally is answered
See how this starts by saying that the SECONDARY SERVER does something?
You are not the secondary server. You have no authorization to even ask
for AXFR, let alone demand an answer.
Of course, there's also no support in RFC 1034 for your strange claim
that a closed connection is not ``an error.''
(As an engineering matter, every protocol has to allow connections to be
closed. Even when limiting unauthorized resource use isn't an issue,
hosts can and do crash. Forbidding this would be idiotic.)
---D. J. Bernstein, Associate Professor, Department of Mathematics,
Statistics, and Computer Science, University of Illinois at Chicago
--
to unsubscribe send a message to namedroppers-request@ops.ietf.org with
the word 'unsubscribe' in a single line as the message text body.
archive: <http://ops.ietf.org/lists/namedroppers/>