[dns-operations] Verisign won't delete obsolete glue records?

Frederico A C Neves fneves at registro.br
Thu Mar 4 18:41:27 UTC 2021


On Thu, Mar 04, 2021 at 01:07:59PM -0500, Andrew Sullivan wrote:
> On Thu, Mar 04, 2021 at 02:36:30PM -0300, Hugo Salgado wrote:
> >We at .CL use NS-attributes, and in the case you describe we
> >take care of deactivating NS in every domain if it went out of zone.
> 
> To me, this is totally behind-the-scenes magic that breaks the RRR
> interaction model, but YMMV of course.
> 

You could do it respecting the authorization model of the
registry. Check delegations regularly and report to registrants, even
if this goes through registrars, they could take care of lame
delegations respecting the RRR model. We've being doing this for
decades at br and works pretty well.

Fred



More information about the dns-operations mailing list