nanog mailing list archives
Re: DNS pulling BGP routes?
From: Masataka Ohta <mohta () necom830 hpcl titech ac jp>
Date: Fri, 8 Oct 2021 13:03:00 +0900
William Herrin wrote:
Facebook's _internal_ DNS, while not anycasted, followed a similar logic: if the data center is isolated and their data goes stale, they stop serving potentially wrong answers.As I already wrote, that is a standard mechanism of DNS with SOA expiration period as is documented in rfc1034Then we agree:
Do we?
The failure mode was that after the data centers disconnected from each other, all their DNS expired, breaking the tools they'd normally use to recover.
It means DNS management of facebook is poor. If they are using standard expire mechanism, they should have used two zones facebook.com for external users with short expire and internal.facebook.com for internal users with long expire.
Facebook withdrawing the BGP routes to its anycasted public DNS servers as they expired made no difference.
If they are not using standard expire mechanism expecting internal data still accessible even after external data has expired, there is difference. Masataka Ohta
Current thread:
- Re: DNS pulling BGP routes?, (continued)
- Re: DNS pulling BGP routes? Masataka Ohta (Oct 07)
- Re: DNS pulling BGP routes? Tom Beecher (Oct 07)
- Re: DNS pulling BGP routes? Bjørn Mork (Oct 07)
- Re: DNS pulling BGP routes? Masataka Ohta (Oct 07)
- Re: DNS pulling BGP routes? William Herrin (Oct 07)
- Re: DNS pulling BGP routes? Mark Tinka (Oct 07)
- Re: DNS pulling BGP routes? Masataka Ohta (Oct 07)
- Re: DNS pulling BGP routes? William Herrin (Oct 07)
- Re: DNS pulling BGP routes? Masataka Ohta (Oct 07)
- Re: DNS pulling BGP routes? William Herrin (Oct 07)
- Re: DNS pulling BGP routes? Masataka Ohta (Oct 07)
- Re: DNS pulling BGP routes? Sabri Berisha (Oct 07)
- Re: DNS pulling BGP routes? Mark Tinka (Oct 07)
- Re: DNS pulling BGP routes? Masataka Ohta (Oct 08)
- Re: DNS pulling BGP routes? Tom Beecher (Oct 08)
- Re: DNS pulling BGP routes? Carsten Bormann (Oct 08)
- Re: DNS pulling BGP routes? William Herrin (Oct 08)
- Re: DNS pulling BGP routes? Masataka Ohta (Oct 08)
- Re: DNS pulling BGP routes? Christopher Morrow (Oct 08)
- Re: DNS pulling BGP routes? Masataka Ohta (Oct 09)
- Re: DNS pulling BGP routes? Bill Woodcock (Oct 09)