North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

Re: large organization nameservers sending icmp packets to dns servers.

  • From: Roland Dobbins
  • Date: Fri Aug 10 20:00:05 2007
  • Authentication-results: sj-dkim-4; [email protected]; dkim=pass ( sig from cisco.com/sjdkim4002 verified; );
  • Dkim-signature: v=0.5; a=rsa-sha256; q=dns/txt; l=845; t=1186790030; x=1187654030; c=relaxed/simple; s=sjdkim4002; h=Content-Type:From:Subject:Content-Transfer-Encoding:MIME-Version; d=cisco.com; [email protected]; z=From:=20Roland=20Dobbins=20<[email protected]> |Subject:=20Re=3A=20large=20organization=20nameservers=20sending=20icmp=2 0packets=20to=20dns=20servers.=20 |Sender:=20; bh=xnOE7qvEkJdNvmFHPGOKISA/hPqFqPEMl5PXfMezi/s=; b=kCyM0ro/UIfSRhsuKebfbEfzei6o54N3Hamu6VHD0ccMTDwoHF3LQFRp9QKVJLvTn0vnA/dj aXunKUXlvuXNgip7F1L+Rjt7RiEf3tpG2mR0xbGdJZ3kXFNdzzg6cIYp;



On Aug 10, 2007, at 4:41 PM, Paul Vixie wrote:

On the other hand, potentially larger messages may offer the necessary
motivation for adding ACLs on recursive DNS, and deploying BCP 38.

i surely do hope so. we need those ACLs and we need that deployment, and if
message size and TCP fallback is a motivator, then let's turn UP the volume.

There are so many more larger and immediate reasons for doing these things that I seriously doubt message size and TCP fallback on the DNS will have any impact at all in terms of motivating the non- motivated.


But, one can always hope.

;>

-----------------------------------------------------------------------
Roland Dobbins <[email protected]> // 408.527.6376 voice

Culture eats strategy for breakfast.

-- Ford Motor Company