nanog mailing list archives

Re: Interesting new dns failures


From: Roger Marquis <marquis () roble com>
Date: Tue, 22 May 2007 14:05:26 -0700 (PDT)


Why are people trying to solve these problems in the core?

Because that's the only place it can be done.

These issues need to and must be solved at the edge.

Been there, done that, with smtp/spam, netbios, and any number of
other protocols that would also be ideally addressed at the source or
edge but, in reality, cannot.

These issues should not be "solved" by the registry operators or
root server operators, that's very dangerous.

Do you know that it is dangerous to fix problems at the core or are
you speculating?  If you can cite specific examples please do.  Simply
saying it is dangerous is indistinguishable from any other verisign
astroturfing.

People are suggesting it become the rule because nobody is
trying anything else.

Can you say what that 'anything else' might consist of?

--
Roger Marquis
Roble Systems Consulting
http://www.roble.com/


Current thread: