Hi Hugo,

I like this proposal and think that DNSOP should adopt it.  I agree that it 
will prove valuable in debugging.

A couple of comments and suggestions:

Sections 2 and 3 could be clarified regarding the value for OPTION-LENGTH.  I 
gather the intention is that OPTION-LENGTH is zero for queries and 4 for 
responses.

The "MUST" in section 3.2 feels too strong to me, absent any other text that 
says this feature is optional to implement or support.  Maybe include some text 
similar to whats in RFC 5001.  e.g., "A name server that understands the 
RRSERIAL option and chooses to honor a particular RRSERIAL request responds by 
..."

DW


> On Jan 27, 2020, at 7:08 AM, Hugo Salgado <hsalg...@nic.cl> wrote:
> 
> Dear DNSOPers, as an operator I tend to have this need to couple
> an answer for a query to an auth server, with the actual "SOA zone
> version" used. So I think it'll be valuable to have an EDNS option
> for it.
> 
> Here I'm proposing it with this new draft. The 'camel index' for
> its implementation/hack/proof-of-concept is about 37 lines in
> NSD 4.1 (more details in Appendix A).
> 
> I've asked some operators and they see value on it. Is there any
> support for adoption in DNSOP?
> 
> -----
> Name:           draft-salgado-rrserial
> Revision:       01
> Title:          The "RRSERIAL" EDNS option for the SOA serial of a RR's zone
> Document date:  2020-01-27
> Group:          Individual Submission
> Pages:          5
> URL:            
> https://www.ietf.org/internet-drafts/draft-salgado-rrserial-01.txt
> Status:         https://datatracker.ietf.org/doc/draft-salgado-rrserial/
> Htmlized:       https://tools.ietf.org/html/draft-salgado-rrserial-01
> Htmlized:       https://datatracker.ietf.org/doc/html/draft-salgado-rrserial
> Diff:           https://www.ietf.org/rfcdiff?url2=draft-salgado-rrserial-01
> 
> Abstract:
>   The "RRSERIAL" EDNS option allows a DNS querier to ask a DNS
>   authoritative server to add a EDNS option in the answer of such query
>   with the SOA serial number field of the origin zone which contains
>   the answered resource record.
> 
>   This "RRSERIAL" data allows to debug problems and diagnosis by
>   helping to recognize the origin of an answer, associating this answer
>   with a respective zone version.
> -----
> 
> Best,
> 
> Hugo Salgado
> 
> _______________________________________________
> DNSOP mailing list
> DNSOP@ietf.org
> https://www.ietf.org/mailman/listinfo/dnsop

Attachment: smime.p7s
Description: S/MIME cryptographic signature

_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to