To:
Stuart Kwan <skwan@Exchange.Microsoft.com>
cc:
dnsop@cafax.se, Levon Esibov <levone@Exchange.Microsoft.com>
From:
Bruce Campbell <bruce.campbell@apnic.net>
Date:
Tue, 25 Apr 2000 10:00:45 +1000 (EST)
In-Reply-To:
<19398D273324D3118A2B0008C7E9A569067DF158@SIT.platinum.corp.microsoft.com>
Sender:
owner-dnsop@cafax.se
Subject:
RE: root server load and dynamic updates.
On Mon, 24 Apr 2000, Stuart Kwan wrote: skwan> In Windows 2000, if the dynamic update client discovers that the skwan> enclosing zone is the root zone, it will (by default) NOT send the skwan> dynamic update request. skwan> skwan> However, if the name of the enclosing zone is at least one label long skwan> (ie. "com", "edu", "arpa", etc) the client will send the update request. skwan> The request will be sent to the primary name server that is named in the skwan> SOA RR of the zone. Ah, theres the sticker, ie: com SOA A.ROOT-SERVERS.NET hostmaster.internic.NET net SOA A.ROOT-SERVERS.net hostmaster.internic.net org SOA A.ROOT-SERVERS.NET hostmaster.internic.NET in-addr.arpa SOA A.ROOT-SERVERS.NET hostmaster.INTERNIC.NET 193.in-addr.arpa SOA ns.ripe.net ops.ripe.net 203.in-addr.arpa SOA ns.apnic.net please-read-TXT-record-of-this-zone-before-emailing-dns-admin.apnic.net ( skwan> Levon and I would like to help investigate the possibility of Windows skwan> 2000's contributing to a load increase. Who should we contact? On our nameservers at least, its not a 'serious' traffic increase, so far. As they show up in the security logs, its more of a trivial annoyance than anything, at the moment. On the off chance that the above behaviour of Win2K may (eventually) be a serious annoyance to the root servers, I'd request the following patches in the next release/service patch to Win2K: Do not send dynamic updates to anything that is listed in the SOA record of a 'one label' zone (ie, com, net, org, all TLDs) . Do not send dynamic updates to anything that is listed in the SOA record of a two label zone in the CCTLDs (ie, com.au, co.nz, ac.uk). Do not send dynamic updates to anything that is listed in the SOA record of a three label zone in in-addr.arpa (ie, 193.in-addr.arpa, 203.in-addr.arpa etc). Do not send dynamic updates to anything that is listed in the SOA record of a eight label zone in ip6.int or in6-addr.arpa (whichever). Regards, -- Bruce Campbell <bruce.campbell@apnic.net> +61-7-3367-0490 Systems Administrator Regional Internet Registry Asia Pacific Network Information Centre For the Asia Pacific Region