Hi,
Some feedback:
1. Introduction, last paragraph.
To me, the mentioning of not addressing DNSSEC bootstrapping comes out
the blue. One sentence later it mentions it is not intended for DNSSEC
synchronization at all. I'd prefer a rewrite of this last paragraph:
"This specification was not designed to synchronize DNSSEC
security records, such as DS RRsets. For such a solution, see the
complimentary solution [REF] for maintaining security delegation
information. In addition, this specification does not address how
to perform bootstrapping operations, including to get the required
initial DNSSEC-secured operating environment in place."
2.1.1.1. The SOA Serial Field
First, this document talks about serial being greater than... It might
be good to reference RFC 1982 serial number arithmetic that defines
serial comparison.
Second, I don't like having a special value of 0 to indicate something.
0 is a valid serial number, which is now not allowed to be used in
restrictions. Perhaps it is better to define a new flag in the Flags
Field that says a serial restriction is being advertised.
2.2.1. Processing Procedure
I am feeling slightly uncomfortable too that you cannot get the data and
the SOA in the same response. I am not sure how to make that
uncomfortable feeling go away, but perhaps Edward's suggestion to add a
note on this is enough.
Best regards,
Matthijs
On 04/02/2014 09:14 PM, Tim Wicinski wrote:
>
> All,
>
> This is the beginning of the Working Group Last Call on Child To Parent
> Synchronization in DNS.
> The London update showed that this work is complete and ready to move
> forward.
>
> The document can be found here:
> https://datatracker.ietf.org/doc/draft-ietf-dnsop-child-syncronization/
> http://www.ietf.org/id/draft-ietf-dnsop-child-syncronization-00.txt
>
> Please take a moment to review the final versions and send up any comments.
>
> This document willhave a 2 week period for comments, closing on April
> 16th, 2014.
>
> thanks
> tim
>
> _______________________________________________
> DNSOP mailing list
> [email protected]
> https://www.ietf.org/mailman/listinfo/dnsop
_______________________________________________
DNSOP mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dnsop