Re: [DNSOP] NOTIFY: How to locate the target

2023-11-09 Thread Mark Elkins
I had thought about this several years ago  (ICANN-59, Johannesburg, June 2017). I was (still am) part of the DNSSEC & Security Workshop planning committee - and live close by. Thought about an RFP, trip to IETF? etc.. My thought was for the DNS operator to signal the Parent at a well known loc

Re: [DNSOP] Multiple drafts discussing the use of DNS NOTIFY

2023-06-13 Thread Mark Elkins
On 2023/06/13 16:09, John Levine wrote: This is certainly the approach I'd like to see. As a Registrar, about 40% of the Domains I've registered on behalf of Registrants are under my DNS management and thus there is no need for either Polling or Notifies. I'd also rather be in the path of any Up

Re: [DNSOP] Multiple drafts discussing the use of DNS NOTIFY

2023-06-12 Thread Mark Elkins
On 2023/06/12 08:49, Brian Dickson wrote: On Sun, Jun 11, 2023 at 8:09 PM Paul Wouters > wrote: On Jun 10, 2023, at 15:42, Tim Wicinski mailto:tjw.i...@gmail.com>> wrote: > >  > All > > The chairs have been looking at two different drafts discu

Re: [DNSOP] Delegation acceptance checks

2023-05-08 Thread Mark Elkins
Back in 1995 when I took over the management of CO.ZA from Mike Lawrie, his strong suggestion was to only add properly functioning delegations to the Zone File - so that is what we did. Why add delegations that are broken to the working parent? As a Registrar - if I am not providing the DNS fo

Re: [DNSOP] CDS/CDNSKEY Deployment

2022-01-13 Thread Mark Elkins
Hi, I run/manage the EDU.ZA zone and am a Registrar. Both systems poll for CDS records if I'm not running the DNS for the domain (e.g. many of the Registrar domains). I have also given presentations on this at the ICANN DNSSEC & Security Workshop - which I also assist with. I poll once a

Re: [DNSOP] SIG(0) useful (and used?)

2018-06-20 Thread Mark Elkins
I run bind on my authoritative nameservers. I run linux on a number of laptops. When these laptops are provided a DHCP address, they use SIG(0) to authenticate a forwards zone update to update their current (DHCP provided) IPv4 address into the Zone. I've been doing this for years - ever since Joha

Re: [DNSOP] CDS polling, was Re: [Ext] Re: Clarifying referrals (#35)

2017-11-14 Thread Mark Elkins
On 14/11/2017 01:37, Evan Hunt wrote: > On Tue, Nov 14, 2017 at 09:16:43AM +1100, Mark Andrews wrote: >> Remember the draft was designed to handle ALL record updates to the >> parent zone after being approved by the registrar in a unified manner. >> NS, DS, A, DNAME, , TXT, CNAME, etc. This i

Re: [DNSOP] opportunistic refresh and Happy Eyeballs

2017-08-15 Thread Mark Elkins
The Query portion of the DNS protocol can probably ask more than one question at a time. (I think I've only ever seen "QUERY: 1" in all the digs I've ever done - but might be wrong). Of course - if one were to ask for both an A and at the same time - one gets the same problem - how does one