Paul Hoffman wrote:
> On Jul 9, 2014, at 12:43 AM, Paul Vixie <p...@redbarn.org> wrote:
>
>> in my opinion, the applicability statement of a recursive solution would
>> be: "if you want these benefits and can manage these risks, then you can
>> configure your rdns as follows". whereas the applicability statement for
>> an authoritative solution would be: "if you want to serve root dns
>> content to a loopback, lan, campus, or global network, then configure
>> your adns and your routing as follows."
>>
>> separate from applicability, there is vision. the vision statement for
>> an rdns solution would be: "to allow self selected recursive dns
>> operators to become less dependent on the root name server system, the
>> following proposal is offered." whereas the vision statement for the
>> adns solution would be: "to better server root dns content to the
>> internet, the following proposal is offered."
>
> These statements assume that there is a need for an "authoritative solution", 
> ...

no. these statements offer specific motives to specific self-identified
parties.

> ...
>
> Given that you are one of the co-authors of draft-lee-dnsop-scalingroot, can 
> you say why your authoritative proposal is significantly better than the 
> current operational base?

yes. in
<https://www.icann.org/en/system/files/files/report-21feb14-en.pdf>
(section 9.4) i wrote as follows:

<< Criticisms of the current and historical Root Name Server System
include lack of resistance to DDoS
attack, noting that even with the current wide scale anycasting by every
Root Name Server Operator,
there are still only a few hundred name servers in the world who can
answer authoritatively for the DNS
root zone. We are also concerned that reachability of the Root Name
Server System is required even for
purely local communication, since otherwise local clients have no way to
discover local services. In a
world sized distributed system like the Internet, critical services
ought to be extremely well distributed. >>

vixie

_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to