Re: DNS: ADNA has a LONG way to go.

Re: DNS: ADNA has a LONG way to go.

From: Scott Howard <scott§doc.net.au>
Date: Wed, 1 Apr 1998 23:58:38 +1000 (EST)
> >So how do I reconcile this statement with this false root .aus stuff
> 
> Hmm, last time I looked The servers I sponsor for AURSC and those sponsored
> by other members conformed to RFC 2010.  Must be REAL root servers.

Bzzzt. Wrong.

See below for a list of things where your servers break this RFC. This is
just from a quick look through - I'm sure there's probably more if I could
be bothered looking.

> I should also ask, Geoff are you running a Root Server? 

You're right Adam. After all, you obviously know a lot more about the
Internet than Geoff does. After all, what has Geoff ever done for the
good of the internet... (*)

> As a point of interest, it's a breach of the Trade Practices Act to make a
> misleading statement about a product.

What, things like claiming you run an RFC2010 compliant Root server when
you actually dont?

> You statement "false root .aus" is in fact misleading because AURSC does
> run fully RFC compliant root servers.  This makes them ROOT SERVERS.

They aren't fully RFC compliant root servers. This makes then .... ???

> Secondly .AUS is resolvable, thus it's mislwading to say it's false,
> because it is in fact a truth, it does exist and it's visible and can be seen.

Umm.. yeah..  whatever..

> So please be very careful when making claims about AURSC, they could lead
> to an action under the Trade Practices Act.

Oh I hope so, because if it did happen, I'm sure I'd know which way it
would go...

  Scott.

(*) Hint: that's sarcasm for those to slow to notice...

------------------------------------------------------------
Indented bits are from the fabled RFC 2010, non-indented are my
comments/observations of rs{1,2,3}.aursc.ah.net.

   2.3. Dedicated host.  A name server host should have no other
   function, and no login accounts other than for system or network
   administrators.  No other network protocols should be served by a
   name server host (e.g., SMTP, NNTP, FTP, et al).  If login is
   permitted from other than the system console, then the login service
   must be by encrypted channel (e.g., Kerberized and encrypted
   rlogin/telnet, the secure shell (SSH), or an equivilent).


marvin:~$ telnet rs3.aursc.ah.net. 25
Trying 203.29.72.14...
Connected to rs3.aursc.ah.net.
Escape character is '^]'.
220 jupiter ESMTP Sendmail 8.8.7/8.8.7; Thu, 2 Apr 1998 12:44:18 +1000
quit
221 jupiter closing connection
Connection closed by foreign host.
marvin:~$ telnet rs2.aursc.ah.net. 80
Trying 203.21.205.3...
Connected to rs2.aursc.ah.net.
Escape character is '^]'.
HEAD / HTTP/1.0

HTTP/1.0 200 OK
Date: Wed, 01 Apr 1998 23:30:58 GMT
Server: Apache/1.1.3
Content-type: text/html
Content-length: 416
Last-modified: Wed, 03 Jul 1996 06:18:16 GMT

   2.6. Physical environment.  A name server host must be located in a
   secure space such as a locked computer room or a data center with
   restricted access.  The power supply should be redundant, using
   batteries, generators or some other means to protect against utility
   power failures.  Network connectivity should be redundant, so that a
   single wide area line failure cannot completely isolate the name
   server host from the rest of the network.

I can't see redundant links to rs1.aursc.ah.net or rs2.aursc.ah.net.

   2.12. Recursion shall be disabled for queries.

Not so for rs3.aursc.ah.net.

   3.1. Host population.  A server's location on the network should be
   such that it has a low IP hop count to a high number of end hosts.
   Duplication of service should be avoided, such that any given set of
   end hosts needs to have a low IP hop count to at most one authority
   server for any given zone.

traceroute to rs1.aursc.ah.net (203.21.205.2), 30 hops max, 40 byte packets
[...]
 6  amaze1.lnk.telstra.net (139.130.33.6)  149.503 ms  144.59 ms  139.551 ms
 7  rs1.aursc.ah.net (203.21.205.2)  139.617 ms  135.321 ms  129.415 ms

traceroute to rs2.aursc.ah.net (203.21.205.3), 30 hops max, 40 byte packets
[...]
 6  amaze1.lnk.telstra.net (139.130.33.6)  210.112 ms  134.291 ms  129.446 ms
 7  rs2.aursc.ah.net (203.21.205.3)  139.598 ms  165.017 ms  149.676 ms
Received on Thu Apr 02 1998 - 00:20:44 UTC

This archive was generated by hypermail 2.3.0 : Sat Sep 09 2017 - 22:00:03 UTC