To:
Stuart Kwan <skwan@Exchange.Microsoft.com>
cc:
dnsop@cafax.se, Levon Esibov <levone@Exchange.Microsoft.com>
From:
Bruce Campbell <bruce.campbell@apnic.net>
Date:
Tue, 25 Apr 2000 10:00:45 +1000 (EST)
In-Reply-To:
<19398D273324D3118A2B0008C7E9A569067DF158@SIT.platinum.corp.microsoft.com>
Sender:
owner-dnsop@cafax.se
Subject:
RE: root server load and dynamic updates.
On Mon, 24 Apr 2000, Stuart Kwan wrote:
skwan> In Windows 2000, if the dynamic update client discovers that the
skwan> enclosing zone is the root zone, it will (by default) NOT send the
skwan> dynamic update request.
skwan>
skwan> However, if the name of the enclosing zone is at least one label long
skwan> (ie. "com", "edu", "arpa", etc) the client will send the update request.
skwan> The request will be sent to the primary name server that is named in the
skwan> SOA RR of the zone.
Ah, theres the sticker, ie:
com SOA A.ROOT-SERVERS.NET hostmaster.internic.NET
net SOA A.ROOT-SERVERS.net hostmaster.internic.net
org SOA A.ROOT-SERVERS.NET hostmaster.internic.NET
in-addr.arpa SOA A.ROOT-SERVERS.NET hostmaster.INTERNIC.NET
193.in-addr.arpa SOA ns.ripe.net ops.ripe.net
203.in-addr.arpa SOA ns.apnic.net
please-read-TXT-record-of-this-zone-before-emailing-dns-admin.apnic.net (
skwan> Levon and I would like to help investigate the possibility of Windows
skwan> 2000's contributing to a load increase. Who should we contact?
On our nameservers at least, its not a 'serious' traffic increase, so far.
As they show up in the security logs, its more of a trivial annoyance than
anything, at the moment.
On the off chance that the above behaviour of Win2K may (eventually) be a
serious annoyance to the root servers, I'd request the following patches
in the next release/service patch to Win2K:
Do not send dynamic updates to anything that is listed in the SOA
record of a 'one label' zone (ie, com, net, org, all TLDs) .
Do not send dynamic updates to anything that is listed in the SOA
record of a two label zone in the CCTLDs (ie, com.au, co.nz,
ac.uk).
Do not send dynamic updates to anything that is listed in the SOA
record of a three label zone in in-addr.arpa (ie,
193.in-addr.arpa, 203.in-addr.arpa etc).
Do not send dynamic updates to anything that is listed in the SOA
record of a eight label zone in ip6.int or in6-addr.arpa
(whichever).
Regards,
--
Bruce Campbell <bruce.campbell@apnic.net> +61-7-3367-0490
Systems Administrator Regional Internet Registry
Asia Pacific Network Information Centre For the Asia Pacific Region