[97attendees] Room DNS not of high fidelity

Adam Roach <adam@nostrum.com> Sat, 12 November 2016 01:01 UTC

Return-Path: <adam@nostrum.com>
X-Original-To: 97attendees@ietfa.amsl.com
Delivered-To: 97attendees@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 91CB91295BE for <97attendees@ietfa.amsl.com>; Fri, 11 Nov 2016 17:01:57 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.397
X-Spam-Level:
X-Spam-Status: No, score=-3.397 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RP_MATCHES_RCVD=-1.497] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id uG0hK-l2BEz4 for <97attendees@ietfa.amsl.com>; Fri, 11 Nov 2016 17:01:56 -0800 (PST)
Received: from nostrum.com (raven-v6.nostrum.com [IPv6:2001:470:d:1130::1]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 600FF129407 for <97attendees@ietf.org>; Fri, 11 Nov 2016 17:01:56 -0800 (PST)
Received: from dhcp-8586.meeting.ietf.org (dhcp-8586.meeting.ietf.org [31.133.133.134]) (authenticated bits=0) by nostrum.com (8.15.2/8.15.2) with ESMTPSA id uAC11sAF022545 (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128 verify=NO) for <97attendees@ietf.org>; Fri, 11 Nov 2016 19:01:55 -0600 (CST) (envelope-from adam@nostrum.com)
From: Adam Roach <adam@nostrum.com>
To: 97attendees@ietf.org
Message-ID: <b6b858e8-b89e-cd3e-8925-65a73c1616ff@nostrum.com>
Date: Sat, 12 Nov 2016 10:01:53 +0900
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.10; rv:45.0) Gecko/20100101 Thunderbird/45.4.0
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"; format="flowed"
Content-Transfer-Encoding: 7bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/97attendees/WSfytHXjB16XxBdLvoSIe2f2diQ>
X-Mailman-Approved-At: Fri, 11 Nov 2016 19:33:28 -0800
Subject: [97attendees] Room DNS not of high fidelity
X-BeenThere: 97attendees@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: "Mailing list of IETF 97 attendees that have opted in on this list." <97attendees.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/97attendees>, <mailto:97attendees-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/97attendees/>
List-Post: <mailto:97attendees@ietf.org>
List-Help: <mailto:97attendees-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/97attendees>, <mailto:97attendees-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 12 Nov 2016 01:01:57 -0000

Just as a warning --

The circuits in the hotel rooms (at least, as of Saturday morning) 
appear to be local circuits rather than the normal IETF infrastructure. 
Normally, this wouldn't be notable, but the DNS servers don't appear to 
necessarily be doing things correctly. I noticed this when I tried to go 
to http://www.homedepot.com this morning, and was greeted with an error 
message.

What's really odd is that the name "www.homedepot.com" was resolving to 
a Korean IP address (123.215.198.10). After bringing up my VPN, i was 
able to get to the correct web site just fine.

So if you're seeing strange behavior in the rooms, you probably want to 
either use a VPN or manually configure your DNS to use a known-good server.

/a


P.S. I suspect there's an object lesson in here about DNSSEC, but I'm 
not entirely sure what it is.