[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: in support of axfr-clarify



-----BEGIN PGP SIGNED MESSAGE-----


>>>>> "Paul" == Paul Vixie <vixie@vix.com> writes:
    Paul> which is that a delegation point is owned by the child zone and the parent
    Paul> can at best send delegations, never answers and never authoritative, when
    Paul> queried for things at a child zone's delegation point.  bind9 does this
    Paul> correctly.  an apparently common misunderstanding as to the contents of a
    Paul> zone is that data can be copied from a child without changing the identity
    Paul> of the parent.  this is just false, and is indicative of other conceptual
    Paul> errors.

  I agree strongly with you on this - delegations belong to the child.

  What about DS? The problems identified at the workshop stem PRECISELY from
the problems with who is authoritative for the DS record. 

  A hack was proposed, whereby the DS record for example.com would be
actually named as _ds_example.com. This restores the principle that you
outline above. it would be very nice if we could come up with a solution
to the DS problem doesn't violate this principal.

]       ON HUMILITY: to err is human. To moo, bovine.           |  firewalls  [
]   Michael Richardson, Sandelman Software Works, Ottawa, ON    |net architect[
] mcr@sandelman.ottawa.on.ca http://www.sandelman.ottawa.on.ca/ |device driver[
] panic("Just another Debian GNU/Linux using, kernel hacking, security guy"); [


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.7 (GNU/Linux)
Comment: Finger me for keys

iQCVAwUBPeeQ8YqHRg3pndX9AQHk7QQAwHU8+i6q8dY2VaZx+zfu7brVS+b02j/a
7PlynC7Fype5616zK44EssmvRuSBZQovLZz620AhtfRSH6x/W908xl7It2A8/v3R
i3RPX9Za+cqjoNIra1RkE5Uv0tUgzA8wiQVrRNNuNGwQN6xsgc+f+AN0GHEZKd05
6oSKMS+tQDI=
=5XiK
-----END PGP SIGNATURE-----

--
to unsubscribe send a message to namedroppers-request@ops.ietf.org with
the word 'unsubscribe' in a single line as the message text body.
archive: <http://ops.ietf.org/lists/namedroppers/>