[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: wcard-clarify's change
Namedroppers,
We have to get to a consensus on this one at some point. I want to try
and keep momentum going.
Let us define X="something that matches the *"
Then I think we have consensus on the fact that there is a problem in
the fact that for QNAME=X QTYPE=A we will get different answers from a
cache depending on the fact if the cache was asked QNAME=X,QTYPE=CNAME
before. This is an ambiguity and it needs clarification.
I think that the TTL=0 solution will not lead to consensus so we are
currently left with two possibilities:
- Either clarify the algorithm so that QNAME=X,QNAME!=CNAME will
produce a CNAME response in the authoritative server.
- Or outlawing "* CNAME".
Am I missing other solutions?
Process:
- If there is anybody who CANNOT live with one of the two solutions than
speak up and motivate.
- If there is a strong preference for one of the solutions than also speak up
and motivate.
- If you can live with the default (below), or you really do not care
which solution is picked, it would be nice to know so we know people
actually read this thread.
I hope that based on these two questions we can cook up the consensus
solution. Please keep in mind you do not have to like that solution but you
should be able to live with it.
If there is no input before Oct 18 I will take "Outlawing * CNAME" as
being the consensus outcome of this issue. The motivation for me
choosing that particular solution as default is that it is simplest;
you do not have to deal with all kinds of loop protections etc.
-- Olaf
DNSEXT Co-Chair.
Is there an English equivalent to the proverb "een olifant in een
porcelein kast"?
--
to unsubscribe send a message to namedroppers-request@ops.ietf.org with
the word 'unsubscribe' in a single line as the message text body.
archive: <http://ops.ietf.org/lists/namedroppers/>