> Heho, > > I mentioned to Michael -- in a direct email -- that I wonder if > > there is an opportunity to put something in parent DNS zones in the > > .arpa sub-domains, much like DS records for DNSSEC go in parent > > zones, so that an IP provider (or at least naming authority) can > > specify that a range is delegated to another entity. > > Usually this is ONLY done for a /24 or greater by upstream > providers.. (While it can get done for smaller blocks, you end up > with that ugly double PTR record, one from the provider and one from > your DNS server) _This_ is what the IRR system/'rwhois' is for, no? I usually put objects for v4 i delegate into IRR, same for v6; I recall that hetzner also does (used to do?) this for delegated networks in their dedicated server product. At least the RIPEDB comes with an API.
ARIN even says explicitly that ISPs only have 7(!) days to submit reassignments of v4/29 v6/56 or shorter to the database. > > I also mentioned that miscreants would be likely to abuse this and > > artificially divide their IP space so that bans on some parts would > > not effect other parts. Hence the need to have a larger addressing > > /naming authority provide this. Yeah, like, the LIRs? (Granted, the bar to become a LIR in RIPE is not that high (and an LLC not that much more difficult to get for the other RIRs; But you can technically nuke bad-faith LIRs from orb... er ASPATH). With best regards, Tobias _______________________________________________ mailop mailing list [email protected] https://list.mailop.org/listinfo/mailop
