[dns-operations] Recommended zone serial number format for over 100 changes / day

Andrew Sullivan ajs at anvilwalrusden.com
Mon Apr 4 11:51:22 UTC 2016


On Sun, Apr 03, 2016 at 08:44:41PM -0700, Colm MacCárthaigh wrote:
> Not quite, it's out of date - but not broken. That's much better.

Well, it _might_ be better.  It depends on what you're trying to achieve.

For instance, DNAMEs are sometimes introduced in order to move
operators.  If the losing operator is hostile, then actually having
the old service data being served authoritatively could be worse than
nothing.

> > On the slave, the zone is not up to date and will eventually fail because
> > of
> > the inability to transfer.
> 
> 
> It needn't.

It certainly must if the issue isn't fixed -- it'll hit the expire
time.  You seem to be suggesting that the slave server needs to be
upgraded in some way before the new (unknown) RR can be accepted on
that slave.  The decision about that may not be under the control of
the zone administrator, becuase the slave name server might be under
the control of someone else.

Best regards,

A

-- 
Andrew Sullivan
ajs at anvilwalrusden.com



More information about the dns-operations mailing list