Re: [dnsext] New Version Notification for draft-ah-dnsext-rfc1995bis-ixfr-02

Masataka Ohta <mohta@necom830.hpcl.titech.ac.jp> Thu, 18 August 2011 21:05 UTC

Return-Path: <mohta@necom830.hpcl.titech.ac.jp>
X-Original-To: dnsext@ietfa.amsl.com
Delivered-To: dnsext@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A7ED721F8B8A for <dnsext@ietfa.amsl.com>; Thu, 18 Aug 2011 14:05:34 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: 0.069
X-Spam-Level:
X-Spam-Status: No, score=0.069 tagged_above=-999 required=5 tests=[AWL=-0.141, BAYES_00=-2.599, HELO_EQ_JP=1.244, HOST_EQ_JP=1.265, MIME_8BIT_HEADER=0.3]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id w-qk2nMibjRJ for <dnsext@ietfa.amsl.com>; Thu, 18 Aug 2011 14:05:34 -0700 (PDT)
Received: from necom830.hpcl.titech.ac.jp (necom830.hpcl.titech.ac.jp [131.112.32.132]) by ietfa.amsl.com (Postfix) with SMTP id D610A21F8B89 for <dnsext@ietf.org>; Thu, 18 Aug 2011 14:05:33 -0700 (PDT)
Received: (qmail 29992 invoked from network); 18 Aug 2011 21:07:45 -0000
Received: from necom830.hpcl.titech.ac.jp (HELO ?127.0.0.1?) (131.112.32.132) by necom830.hpcl.titech.ac.jp with SMTP; 18 Aug 2011 21:07:45 -0000
Message-ID: <4E4D7E7E.1070700@necom830.hpcl.titech.ac.jp>
Date: Fri, 19 Aug 2011 06:05:02 +0900
From: Masataka Ohta <mohta@necom830.hpcl.titech.ac.jp>
User-Agent: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20110624 Thunderbird/5.0
MIME-Version: 1.0
To: Ondřej Surý <ondrej.sury@nic.cz>
References: <4DB81069.3080404@nic.cz> <4DF9B5BD.7010900@nic.cz> <a06240803ca1fd7525c50@10.31.201.23> <BANLkTinjRDHyKH-tLEoejodXb2+7qQLO7w@mail.gmail.com> <a06240801ca2102b8b4f2@10.31.201.23> <BANLkTikoVVaXF2_LJ3KHm6P7oFpfC+n2tw@mail.gmail.com> <a06240801ca21246f76de@10.31.201.23> <BANLkTinVfuL0WEYwaycTaAnWDS9vYF5NjQ@mail.gmail.com> <4DFC9C20.4030401@necom830.hpcl.titech.ac.jp> <BANLkTimhLJfsmMe3AE34yLrOQ+zyZPBdgQ@mail.gmail.com> <4E000B93.3030306@necom830.hpcl.titech.ac.jp> <8A34D894-4323-4948-811E-6568C838A503@nic.cz>
In-Reply-To: <8A34D894-4323-4948-811E-6568C838A503@nic.cz>
Content-Type: text/plain; charset="UTF-8"; format="flowed"
Content-Transfer-Encoding: 7bit
Cc: dnsext@ietf.org
Subject: Re: [dnsext] New Version Notification for draft-ah-dnsext-rfc1995bis-ixfr-02
X-BeenThere: dnsext@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: DNS Extensions working group discussion list <dnsext.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsext>, <mailto:dnsext-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dnsext>
List-Post: <mailto:dnsext@ietf.org>
List-Help: <mailto:dnsext-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsext>, <mailto:dnsext-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 18 Aug 2011 21:05:34 -0000

Ondej Sur wrote:

>> Are your examples essentially different from Brian Dickson's?

> Much simpler.  The DNSSEC signed zone is huge and with anycasts scattered
> around the world downloading the zone from hidden master(s) I just don't
> want the AXFR happen if it can be prevented.

You fail to explain why the AXFR happens.

> And there's a lot of stuff which can happen
> on the master to forget the differences.

I can see none.

> The problem is that the 500MB zone * number of anycast slaves (25ish) is
> 10 GB of data to transfer.  Sure, I can just buy a really fat pipe, but
> I am no friend of "throw more money" there solutions when we can have
> simple protocol solution.

The simplest solution is not to forget the differences.

						Masataka Ohta