Paul Hoffman wrote: > On Jul 9, 2014, at 12:43 AM, Paul Vixie <p...@redbarn.org> wrote: > >> in my opinion, the applicability statement of a recursive solution would >> be: "if you want these benefits and can manage these risks, then you can >> configure your rdns as follows". whereas the applicability statement for >> an authoritative solution would be: "if you want to serve root dns >> content to a loopback, lan, campus, or global network, then configure >> your adns and your routing as follows." >> >> separate from applicability, there is vision. the vision statement for >> an rdns solution would be: "to allow self selected recursive dns >> operators to become less dependent on the root name server system, the >> following proposal is offered." whereas the vision statement for the >> adns solution would be: "to better server root dns content to the >> internet, the following proposal is offered." > > These statements assume that there is a need for an "authoritative solution", > ...
no. these statements offer specific motives to specific self-identified parties. > ... > > Given that you are one of the co-authors of draft-lee-dnsop-scalingroot, can > you say why your authoritative proposal is significantly better than the > current operational base? yes. in <https://www.icann.org/en/system/files/files/report-21feb14-en.pdf> (section 9.4) i wrote as follows: << Criticisms of the current and historical Root Name Server System include lack of resistance to DDoS attack, noting that even with the current wide scale anycasting by every Root Name Server Operator, there are still only a few hundred name servers in the world who can answer authoritatively for the DNS root zone. We are also concerned that reachability of the Root Name Server System is required even for purely local communication, since otherwise local clients have no way to discover local services. In a world sized distributed system like the Internet, critical services ought to be extremely well distributed. >> vixie
_______________________________________________ DNSOP mailing list DNSOP@ietf.org https://www.ietf.org/mailman/listinfo/dnsop