Internet-Draft draft-ietf-dnsop-delegation-mgmt-via-ddns-01.txt is now
available. It is a work item of the Domain Name System Operations (DNSOP) WG
of the IETF.
Title: Automating DNS Delegation Management via DDNS
Authors: Johan Stenstam
Erik Bergström
Leon Fernandez
Name: draft-ietf-dnsop-delegation-mgmt-via-ddns-01.txt
Pages: 23
Dates: 2026-03-02
Abstract:
Delegation information (i.e. the NS RRset, possible glue, possible DS
records) should always be kept in sync between child zone and parent
zone. However, in practice that is not always the case.
When the delegation information is not in sync the child zone is
usually working fine, but without the amount of redundancy that the
zone owner likely expects to have. Hence, should any further
problems ensue it could have catastrophic consequences.
The DNS name space has lived with this problem for decades and it
never goes away. Or, rather, it will never go away until a fully
automated mechanism for how to keep the information in sync
automatically is deployed.
This document proposes such a mechanism based on DNS Dynamic Updates
(DDNS) secured with SIG(0) signatures, sent from the child to the
parent across the zone cut. The target of the update is discovered
via the DSYNC record defined in [RFC9859].
TO BE REMOVED: This document is being collaborated on in Github at:
https://github.com/johanix/draft-ietf-dnsop-delegation-mgmt-via-ddns
(https://github.com/johanix/draft-ietf-dnsop-delegation-mgmt-via-
ddns). The most recent working version of the document, open issues,
etc, should all be available there. The authors (gratefully) accept
pull requests.
The IETF datatracker status page for this Internet-Draft is:
https://datatracker.ietf.org/doc/draft-ietf-dnsop-delegation-mgmt-via-ddns/
There is also an HTMLized version available at:
https://datatracker.ietf.org/doc/html/draft-ietf-dnsop-delegation-mgmt-via-ddns-01
A diff from the previous version is available at:
https://author-tools.ietf.org/iddiff?url2=draft-ietf-dnsop-delegation-mgmt-via-ddns-01
Internet-Drafts are also available by rsync at:
rsync.ietf.org::internet-drafts
_______________________________________________
DNSOP mailing list -- [email protected]
To unsubscribe send an email to [email protected]