Re: [DNSOP] valid value range for SOA REFRESH/RETRY/EXPIRE

Kevin Darcy <kevin.darcy@fcagroup.com> Fri, 18 October 2019 15:28 UTC

Return-Path: <kevin.darcy@fcagroup.com>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B0A8B12000F for <dnsop@ietfa.amsl.com>; Fri, 18 Oct 2019 08:28:35 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.898
X-Spam-Level:
X-Spam-Status: No, score=-1.898 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=fcagroup-com.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id n0AIzH5NvJcL for <dnsop@ietfa.amsl.com>; Fri, 18 Oct 2019 08:28:33 -0700 (PDT)
Received: from mail-io1-xd33.google.com (mail-io1-xd33.google.com [IPv6:2607:f8b0:4864:20::d33]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 04ACD120091 for <dnsop@ietf.org>; Fri, 18 Oct 2019 08:28:32 -0700 (PDT)
Received: by mail-io1-xd33.google.com with SMTP id c25so7873831iot.12 for <dnsop@ietf.org>; Fri, 18 Oct 2019 08:28:32 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=fcagroup-com.20150623.gappssmtp.com; s=20150623; h=mime-version:references:in-reply-to:from:date:message-id:subject:to; bh=gJNMfCEwMvxKA9vmNz0/3HIdOGjTAVExxWuyFgd32E0=; b=JBwtvvAz+J6XsSsZV/fWGMbYvGU7DGMQvz/2qECG5Tj+DA1T5BE+F9EKNH7+fOC7ul fqEmd3GKppP2SNfNgLXNb/BoCphzCJhcD6GiZPr1W8QPITTwQLV03bbHrtXLGegLve6l 76mLKRhqwLsmBfxr4CCzPaBNvNU40Tndp1JZyMU1n4XUhUrV4+cgFaw7GehxJoo6UOMO /4KNHR8MXILM0cgksfajttOAJlmft+Txjv1vcvYkeobhmOUN3tJYE45Gwu+re4FCZtJU S8v/xm4b3sguAjdU9KoBJ8WKnSZHryC5X/9TD1adAwCxOf0ThFyu3hwFwUXgxCOvOZb0 7Jxw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to; bh=gJNMfCEwMvxKA9vmNz0/3HIdOGjTAVExxWuyFgd32E0=; b=aJCRRrG0bXpVc4q/LIJfNrNnIe9Ji2LORoIXAPoFifMAnn7FmBS7EfTkFEZUBonPV8 ZPascUQi4u2DFtAxqhGakWoF3+zZHwfQtFJNmr71/wF0yuj3RvwMsEdwHYeQy+B8LYk4 pFjYPF5H0RAoE8Sm7Lzm7bZrBrff4OlkpwMQ3V7DCRTglBUPII3VcX2sipiLNv53+DQT ww/kksZshDaJEwsOa9+EskVPJt6JtHn7VnOqcnFaDwlLEeKeXyjcAFFxfaqDuS9tYvcC xgkF+IAWEYdbGB5z8PUICCkj3r8cRHEiTZ6OL+EShvPbPjdIlO/8voVQdmlsBkZjt7AG Re/Q==
X-Gm-Message-State: APjAAAWvENFFuw9ppSe2ngWuzd39ucKXrIu5Q9esRDnG3jY2St/B9to2 DzgSjDZLTc4/4iNH0MbIZ45+qP4r/iRmKwt25d5YCxw5
X-Google-Smtp-Source: APXvYqw7Indefz8RyVmmHSnxqtglhE3RwgEzSpiJnnUJw40q5EJDHVWSPrcPdY7YoSTFUGAGKnT+ZRysKGqiuoDRvis=
X-Received: by 2002:a02:1d44:: with SMTP id 65mr9446380jaj.129.1571412511770; Fri, 18 Oct 2019 08:28:31 -0700 (PDT)
MIME-Version: 1.0
References: <CAJE_bqcM1PvmwR-icgz4UJuwsV_21FGs615OmExvWmHCVZX4Jw@mail.gmail.com> <F8B56E64-AC0A-441E-A9C9-56E4BF02238F@isc.org> <CAJE_bqfBt+tohvCxOwdeK5uta4cicaUzEDASYkpADFgsyobK=Q@mail.gmail.com> <FEDDE742-64BB-446E-A0B7-0A04FED4B793@isc.org>
In-Reply-To: <FEDDE742-64BB-446E-A0B7-0A04FED4B793@isc.org>
From: Kevin Darcy <kevin.darcy@fcagroup.com>
Date: Fri, 18 Oct 2019 11:28:20 -0400
Message-ID: <CAAeHe+z4R6ch-WCW=Ed6D3aQpt9uyXLVNPyC1C9_x-hLDDCUfQ@mail.gmail.com>
To: dnsop <dnsop@ietf.org>
Content-Type: multipart/alternative; boundary="0000000000008fbde0059530fcc9"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/b9zxauW4EPK257YBZoCc9c97bQc>
Subject: Re: [DNSOP] valid value range for SOA REFRESH/RETRY/EXPIRE
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 18 Oct 2019 15:28:36 -0000

[ Classification Level: PUBLIC ]

Apologies if this sounds condescending, but I haven't seen RFC 1982
mentioned in this thread so far.

While that RFC may not be the last word on the acceptable values of
SOA.SERIAL, in normal operation, it does contain some advice on how to
effectuate (or avoid) a "reset" of a zone's serial.


                          - Kevin

On Thu, Oct 17, 2019 at 7:49 PM Mark Andrews <marka@isc.org> wrote:

>
>
> > On 18 Oct 2019, at 10:46 am, 神明達哉 <jinmei@wide.ad.jp> wrote:
> >
> > At Fri, 18 Oct 2019 10:25:29 +1100,
> > Mark Andrews <marka@isc.org> wrote:
> >
> > > > one obvious interpretation is that REFRESH/RETRY/EXPIRE are signed 32
> > > > bit integers.
> > >
> > > They are all intervals.  How do you have a negative interval?
> >
> > I actually didn't expect they can be negative.  My main question is
> > whether values larger than 2^31-1 should be considered valid.
>
> Well they are in range.  That said slaves can and do apply sanity
> checks to these values.  Both too low and too high cause operational
> problems.
>
> Mark
>
> > --
> > JINMEI, Tatuya
>
> --
> Mark Andrews, ISC
> 1 Seymour St., Dundas Valley, NSW 2117, Australia
> PHONE: +61 2 9871 4742              INTERNET: marka@isc.org
>
> _______________________________________________
> DNSOP mailing list
> DNSOP@ietf.org
> https://www.ietf.org/mailman/listinfo/dnsop
>