[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]


To: Stuart Kwan <skwan@Exchange.Microsoft.com>
cc: dnsop@cafax.se, Levon Esibov <levone@Exchange.Microsoft.com>
From: Bruce Campbell <bruce.campbell@apnic.net>
Date: Tue, 25 Apr 2000 10:00:45 +1000 (EST)
In-Reply-To: <19398D273324D3118A2B0008C7E9A569067DF158@SIT.platinum.corp.microsoft.com>
Sender: owner-dnsop@cafax.se
Subject: RE: root server load and dynamic updates.

On Mon, 24 Apr 2000, Stuart Kwan wrote:

skwan> In Windows 2000, if the dynamic update client discovers that the
skwan> enclosing zone is the root zone, it will (by default) NOT send the
skwan> dynamic update request.
skwan> 
skwan> However, if the name of the enclosing zone is at least one label long
skwan> (ie. "com", "edu", "arpa", etc) the client will send the update request.
skwan> The request will be sent to the primary name server that is named in the
skwan> SOA RR of the zone.

Ah, theres the sticker, ie:

com                     SOA     A.ROOT-SERVERS.NET hostmaster.internic.NET
net                     SOA     A.ROOT-SERVERS.net hostmaster.internic.net
org                     SOA     A.ROOT-SERVERS.NET hostmaster.internic.NET
in-addr.arpa            SOA     A.ROOT-SERVERS.NET hostmaster.INTERNIC.NET
193.in-addr.arpa        SOA     ns.ripe.net ops.ripe.net
203.in-addr.arpa        SOA     ns.apnic.net
please-read-TXT-record-of-this-zone-before-emailing-dns-admin.apnic.net (

skwan> Levon and I would like to help investigate the possibility of Windows
skwan> 2000's contributing to a load increase.  Who should we contact?

On our nameservers at least, its not a 'serious' traffic increase, so far.  
As they show up in the security logs, its more of a trivial annoyance than
anything, at the moment.

On the off chance that the above behaviour of Win2K may (eventually) be a
serious annoyance to the root servers, I'd request the following patches
in the next release/service patch to Win2K:

	Do not send dynamic updates to anything that is listed in the SOA
	record of a 'one label' zone (ie, com, net, org, all TLDs) .

	Do not send dynamic updates to anything that is listed in the SOA
	record of a two label zone in the CCTLDs (ie, com.au, co.nz,
	ac.uk).

	Do not send dynamic updates to anything that is listed in the SOA
	record of a three label zone in in-addr.arpa (ie,
	193.in-addr.arpa, 203.in-addr.arpa etc).

	Do not send dynamic updates to anything that is listed in the SOA
	record of a eight label zone in ip6.int or in6-addr.arpa
	(whichever).

Regards,

-- 
  Bruce Campbell <bruce.campbell@apnic.net>                +61-7-3367-0490
                      Systems Administrator     Regional Internet Registry
    Asia Pacific Network Information Centre    For the Asia Pacific Region



Home | Date list | Subject list