Joe Abley <joe.ab...@icann.org> wrote:
>
> the add/drop problem is a lot simpler if every AS112 node hosts the zone
>
>   $ORIGIN .
>   @ SOA ...
>     NS something
>     NS sensible
>
> and answers authoritatively on the addresses corresponding to
> "something" and "sensible", returning NXDOMAIN for everything in the
> entire namespace apart from . (for which they ought never receive
> queries anyway). This is ugly to some eyes, but it works for domainers
> and it ought to work for us too.

I think BIND treats NXDOMAIN replies with the wrong authority as a
FORMERR. Domainers are returning positive replies which BIND does not
subject to a SOA sanity check.

Tony.
-- 
f.anthony.n.finch  <d...@dotat.at>  http://dotat.at/
Trafalgar: Northerly 5 to 7, occasionally 4 at first, increasing gale 8 later
in north Fitzroy. Moderate or rough, becoming very rough later in north
Fitzroy. Showers. Moderate or good.
_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to