Claiming Authority for root

Kevin Darcy kcd at daimlerchrysler.com
Thu Jun 29 22:50:10 UTC 2000


Barry Margolin wrote:

> In article <395BC842.83AE743B at daimlerchrysler.com>,
> Kevin Darcy  <kcd at daimlerchrysler.com> wrote:
> >Barry Margolin wrote:
> >> The only way I can think of to do that is for them to copy the Internet's
> >> root zone file and merge their changes into it, redoing this every time it
> >> changes.
> >>
> >> The root zone isn't very large and doesn't change often (only when changes
> >> happen to TLD delegations), so this is probably feasible.
> >
> >The only minor wart I can think of with this is that the SOA returned for
> >NXDOMAIN responses might not
> >match the real root SOA exactly.
>
> Why not?  If they copy the root zone file from the real root servers, it
> should include the real root SOA record.  I don't imagine they would need
> to change it when merging in their local changes.

The serial number would get out of synch, if nothing else. As I said, it's a minor
wart...


- Kevin





More information about the bind-users mailing list