Re: [DNSOP] DNS names for local networks - not only home residental networks ...
Mark Andrews <marka@isc.org> Mon, 04 September 2017 22:43 UTC
Return-Path: <marka@isc.org>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 506C5132193 for <dnsop@ietfa.amsl.com>; Mon, 4 Sep 2017 15:43:46 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.9
X-Spam-Level:
X-Spam-Status: No, score=-6.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, PP_MIME_FAKE_ASCII_TEXT=0.001, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id sQQ_zQexYBSs for <dnsop@ietfa.amsl.com>; Mon, 4 Sep 2017 15:43:44 -0700 (PDT)
Received: from mx.ams1.isc.org (mx.ams1.isc.org [199.6.1.65]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 387D1132192 for <dnsop@ietf.org>; Mon, 4 Sep 2017 15:43:44 -0700 (PDT)
Received: from zmx1.isc.org (zmx1.isc.org [149.20.0.20]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mx.ams1.isc.org (Postfix) with ESMTPS id 17F7624AE10; Mon, 4 Sep 2017 22:42:16 +0000 (UTC)
Received: from zmx1.isc.org (localhost [127.0.0.1]) by zmx1.isc.org (Postfix) with ESMTPS id 9673716005C; Mon, 4 Sep 2017 22:42:22 +0000 (UTC)
Received: from localhost (localhost [127.0.0.1]) by zmx1.isc.org (Postfix) with ESMTP id 4C51F16007F; Mon, 4 Sep 2017 22:42:22 +0000 (UTC)
Received: from zmx1.isc.org ([127.0.0.1]) by localhost (zmx1.isc.org [127.0.0.1]) (amavisd-new, port 10026) with ESMTP id r6Myjbclv2aV; Mon, 4 Sep 2017 22:42:22 +0000 (UTC)
Received: from rock.dv.isc.org (c27-253-115-14.carlnfd2.nsw.optusnet.com.au [27.253.115.14]) by zmx1.isc.org (Postfix) with ESMTPSA id 9037B16005C; Mon, 4 Sep 2017 22:42:21 +0000 (UTC)
Received: from rock.dv.isc.org (localhost [IPv6:::1]) by rock.dv.isc.org (Postfix) with ESMTP id D6ED78419425; Tue, 5 Sep 2017 08:42:18 +1000 (AEST)
To: mhw@wittsend.com
Cc: Tony Finch <dot@dotat.at>, Paul Hoffman <paul.hoffman@vpnc.org>, "dnsop@ietf.org" <dnsop@ietf.org>, "Walter H." <Walter.H@mathemainzel.info>
From: Mark Andrews <marka@isc.org>
References: <150428805872.6417.9525310755360551475@ietfa.amsl.com> <59A9B760.2060209@mathemainzel.info> <alpine.DEB.2.11.1709012044210.2676@grey.csi.cam.ac.uk> <59A9BCA2.6060008@mathemainzel.info> <20170903043202.GA18082@besserwisser.org> <59AC4E42.9080600@mathemainzel.info> <60304450-DFA3-4982-B01D-CC33C49BDCFC@isc.org> <351E3E93-30AF-4F38-ADE0-178DE402D14F@vpnc.org> <C6EEB652-0EAE-48EE-A0CF-938E0D24862A@dotat.at> <1504563125.29012.4.camel@WittsEnd.com>
In-reply-to: Your message of "Mon, 04 Sep 2017 18:12:05 -0400." <1504563125.29012.4.camel@WittsEnd.com>
Date: Tue, 05 Sep 2017 08:42:18 +1000
Message-Id: <20170904224218.D6ED78419425@rock.dv.isc.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/BBTfJs60kFHv3ypC0KUdSSM_6Zg>
Subject: Re: [DNSOP] DNS names for local networks - not only home residental networks ...
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 04 Sep 2017 22:43:46 -0000
In message <1504563125.29012.4.camel@WittsEnd.com>, "Michael H. Warfield" write s: > On Mon, 2017-09-04 at 20:29 +0100, Tony Finch wrote: > > > > On 3 Sep 2017, at 22:51, Paul Hoffman <paul.hoffman@vpnc.org> wrote: > > > On 3 Sep 2017, at 14:38, Mark Andrews wrote: > > > > Why would anyone tell you that â.localâ would conflict when you > > > > were supposed > > > > to register a name *before* using it. > > > > > > Because some vendors gave bad advice in their documentation, > > > particularly in examples. > > > > > > > If you are doing AD correctly you should be able to register you > > > > machines wherever > > > > they connect to the Internet and that requires a public > > > > registration. > > > > > > And that is what Microsoft has suggested in all their documentation > > > for many years. > > > However, Microsoft did encourage their customers to use .local names > > for Active Directory domains for quite a long time - see for example > > this link to the documentation for Windows Small Business Server > > 2003. It isn't fair to only blame MS customers for choosing .local > > domains. > > > https://technet.microsoft.com/en-us/library/cc747455(v=ws.10).aspx > > I would point out an analogous situation with documentation and > addresses. The documentation that accompanied Sun Microsystems SunOS > and Solaris used examples of IP address 1.1.1.1 and 1.2.3.4 and > similar, now making those blocks toxic since that /8 was assigned to > APNIC. IIRC, they also used names like .local and .test in some of > their doco. This isn't just a Microsoft think (and I'm far FAR from a > Microsoft apologist). Sometimes our tech writers do things they > shouldn't when their crystal ball is cloud and we get stuck with the > results. And I've dealt with far FAR worse. The keyword above was examples which they clearly were. Most of 1.0.0.0/8 is in use today despite those examples. The use of local test were also clearly examples. The Microsoft page above advocated the use literal use of .local which is very different. APNIC could allocate those addresses if they wished without much issues. I'm sure there would be lots of takers even given the known limitations. There would be a little extra traffic. They are perfect for eyeball only usage. The real issues arise if you try to use those addresses for servers. Mark > > Tony. > > -- > > f.anthony.n.finch <dot@dotat.at> http://dotat.at > > Regards, > Mike > -- > Michael H. Warfield (AI4NB) | (o) +1 706 850-8773 | mhw@WittsEnd.com > /\/\|=mhw=|\/\/ | (c) +1 678 463-0932 | > http://www.wittsend.com/mhw/ > ARIN whois: ARIN-MHW9 | An optimist believes we live in the best of > all > PGP Key: 0xC0EB9675674627FF | possible worlds. A pessimist is sure of it! -- Mark Andrews, ISC 1 Seymour St., Dundas Valley, NSW 2117, Australia PHONE: +61 2 9871 4742 INTERNET: marka@isc.org
- [DNSOP] DNS names for local networks - not only h… Walter H.
- Re: [DNSOP] DNS names for local networks - not on… Tony Finch
- Re: [DNSOP] DNS names for local networks - not on… Paul Wouters
- Re: [DNSOP] DNS names for local networks - not on… Walter H.
- Re: [DNSOP] DNS names for local networks - not on… Walter H.
- Re: [DNSOP] DNS names for local networks - not on… Tony Finch
- Re: [DNSOP] DNS names for local networks - not on… Paul Wouters
- Re: [DNSOP] DNS names for local networks - not on… Warren Kumari
- Re: [DNSOP] DNS names for local networks - not on… Ralph Droms
- Re: [DNSOP] DNS names for local networks - not on… Warren Kumari
- Re: [DNSOP] DNS names for local networks - not on… Paul Vixie
- Re: [DNSOP] DNS names for local networks - not on… Måns Nilsson
- Re: [DNSOP] DNS names for local networks - not on… Andrew Sullivan
- Re: [DNSOP] DNS names for local networks - not on… Walter H.
- Re: [DNSOP] DNS names for local networks - not on… Walter H.
- Re: [DNSOP] DNS names for local networks - not on… Mark Andrews
- Re: [DNSOP] DNS names for local networks - not on… Paul Hoffman
- Re: [DNSOP] DNS names for local networks - not on… Walter H.
- [DNSOP] DNSSEC in local networks Jim Reid
- Re: [DNSOP] DNSSEC in local networks Walter H.
- Re: [DNSOP] DNS names for local networks - not on… Mark Andrews
- Re: [DNSOP] DNSSEC in local networks Mark Andrews
- Re: [DNSOP] DNSSEC in local networks Jim Reid
- Re: [DNSOP] DNSSEC in local networks Walter H.
- Re: [DNSOP] DNS names for local networks - not on… Måns Nilsson
- Re: [DNSOP] DNSSEC in local networks Mark Andrews
- Re: [DNSOP] DNSSEC in local networks Walter H.
- Re: [DNSOP] DNSSEC in local networks Petr Špaček
- Re: [DNSOP] DNS names for local networks - not on… Stephane Bortzmeyer
- Re: [DNSOP] DNS names for local networks - not on… Stephane Bortzmeyer
- Re: [DNSOP] DNSSEC in local networks Stephane Bortzmeyer
- Re: [DNSOP] DNSSEC in local networks Walter H.
- Re: [DNSOP] DNS names for local networks - not on… Walter H.
- Re: [DNSOP] DNSSEC in local networks Stephane Bortzmeyer
- Re: [DNSOP] DNSSEC in local networks Paul Vixie
- Re: [DNSOP] DNSSEC in local networks Tony Finch
- Re: [DNSOP] DNS names for local networks - not on… Tony Finch
- Re: [DNSOP] DNSSEC in local networks Mark Andrews
- Re: [DNSOP] DNSSEC in local networks Paul Vixie
- Re: [DNSOP] DNS names for local networks - not on… Michael H. Warfield
- Re: [DNSOP] DNS names for local networks - not on… Lyndon Nerenberg
- Re: [DNSOP] DNS names for local networks - not on… Mark Andrews
- Re: [DNSOP] DNS names for local networks - not on… Tony Finch
- Re: [DNSOP] DNSSEC in local networks Walter H.
- Re: [DNSOP] DNSSEC in local networks Walter H.
- Re: [DNSOP] DNS names for local networks - not on… Walter H.
- Re: [DNSOP] DNS names for local networks - not on… Walter H.
- Re: [DNSOP] DNS names for local networks - not on… Walter H.
- Re: [DNSOP] DNSSEC in local networks Mark Andrews
- Re: [DNSOP] DNSSEC in local networks Walter H.
- Re: [DNSOP] DNS names for local networks - not on… Stephane Bortzmeyer
- Re: [DNSOP] DNS names for local networks - not on… Walter H.
- Re: [DNSOP] DNS names for local networks - not on… Matthew Pounsett
- Re: [DNSOP] DNS names for local networks - not on… Andrew Sullivan
- Re: [DNSOP] DNS names for local networks - not on… Paul Vixie
- Re: [DNSOP] DNS names for local networks - not on… Andrew Sullivan
- Re: [DNSOP] DNS names for local networks - not on… Tony Finch
- Re: [DNSOP] DNSSEC in local networks Warren Kumari
- [DNSOP] Fwd: DNSSEC in local networks william manning