Re: [DNSOP] Asking TLD's to perform checks.

Daniel Stirnimann <daniel.stirnimann@switch.ch> Tue, 10 November 2015 10:36 UTC

Return-Path: <daniel.stirnimann@switch.ch>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 95A501A020B for <dnsop@ietfa.amsl.com>; Tue, 10 Nov 2015 02:36:36 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.012
X-Spam-Level:
X-Spam-Status: No, score=-0.012 tagged_above=-999 required=5 tests=[BAYES_40=-0.001, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id vGn7sMvxUO32 for <dnsop@ietfa.amsl.com>; Tue, 10 Nov 2015 02:36:34 -0800 (PST)
Received: from teruel.switch.ch (teruel.switch.ch [IPv6:2001:620:0:1b::28]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 37CFC1A0127 for <dnsop@ietf.org>; Tue, 10 Nov 2015 02:36:33 -0800 (PST)
Received: from surlej.switch.ch (surlej.switch.ch [IPv6:2001:620:0:1001::69]) by teruel.switch.ch (8.14.4/8.14.4/Debian-4) with ESMTP id tAAAaRwe009295 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NOT); Tue, 10 Nov 2015 11:36:29 +0100
Received: from [2001:620:0:69::102] by surlej.switch.ch with esmtpsa (TLSv1:AES128-SHA:128) (Exim 4.72) (envelope-from <daniel.stirnimann@switch.ch>) id 1Zw6Hr-0005Ep-JW; Tue, 10 Nov 2015 11:36:27 +0100
To: Ralf Weber <dns@fl1ger.de>
References: <20151105235402.39FFC3BF2F29@rock.dv.isc.org> <8D78B784-34D3-421E-B82C-52DD32E22B74@fl1ger.de> <20151106201718.0FCBA3C06566@rock.dv.isc.org> <53FE03EF-9C40-40DC-A403-50C0A339C6C6@fl1ger.de>
From: Daniel Stirnimann <daniel.stirnimann@switch.ch>
Message-ID: <5641C8A9.2080200@switch.ch>
Date: Tue, 10 Nov 2015 11:36:25 +0100
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.10; rv:38.0) Gecko/20100101 Thunderbird/38.3.0
MIME-Version: 1.0
In-Reply-To: <53FE03EF-9C40-40DC-A403-50C0A339C6C6@fl1ger.de>
Content-Type: text/plain; charset="windows-1252"
Content-Transfer-Encoding: 7bit
X-CanIt-Geo: ip=2001:620:0:1001::69; country=CH; region=Zurich; city=Birmensdorf; latitude=47.352; longitude=8.4396; http://maps.google.com/maps?q=47.352,8.4396&z=6
X-CanItPRO-Stream: switch-ch:outbound (inherits from switch-ch:default, base:default)
X-Canit-Stats-ID: Bayes signature not available
X-Scanned-By: CanIt (www . roaringpenguin . com)
Archived-At: <http://mailarchive.ietf.org/arch/msg/dnsop/Bsbb2PUtRPPDXJK9Onryi9Xi24g>
Cc: dnsop@ietf.org
Subject: Re: [DNSOP] Asking TLD's to perform checks.
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 10 Nov 2015 10:36:36 -0000

>> Yes.  Daily checks of all delegated server.  I don't believe they are
>> currently reporting the discovered faults.
>>
>> 	http://bamus.switch.ch/edns/summary.html
> Cool, but unless they inform someone it won't help improve anything.
> Others do and it's good to see some people on the authoritative side
> doing something about it. IMHO it's still a drop in the ocean.

True, we are not reporting this information automatically to domain
holders or technical contacts.

I'm using it when I happen to discuss DNS issues with registrars,
hosters are domain owners. Some of the largest .ch hosters got their DNS
server fixed after that. However, overall my effort is a drop on a hot
stone.

Daniel

-- 
SWITCH
Daniel Stirnimann, SWITCH-CERT
Werdstrasse 2, P.O. Box, 8021 Zurich, Switzerland
phone +41 44 268 15 15, direct +41 44 268 16 24
daniel.stirnimann@switch.ch, http://www.switch.ch