Re: [DNSOP] Adding more example configurations to draft-ietf-dnsop-7706bis

Joe Abley <jabley@hopcount.ca> Sat, 02 March 2019 14:59 UTC

Return-Path: <jabley@hopcount.ca>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9FEAE1274D0 for <dnsop@ietfa.amsl.com>; Sat, 2 Mar 2019 06:59:19 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level:
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=hopcount.ca
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id C6TQHKE7p_-H for <dnsop@ietfa.amsl.com>; Sat, 2 Mar 2019 06:59:17 -0800 (PST)
Received: from mail-io1-xd2e.google.com (mail-io1-xd2e.google.com [IPv6:2607:f8b0:4864:20::d2e]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6151512785F for <dnsop@ietf.org>; Sat, 2 Mar 2019 06:59:17 -0800 (PST)
Received: by mail-io1-xd2e.google.com with SMTP id e186so652467ioa.0 for <dnsop@ietf.org>; Sat, 02 Mar 2019 06:59:17 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=hopcount.ca; s=google; h=mime-version:subject:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to; bh=DwNWPar09tmwbBOFH5e04s+kJ/JX8VtAZy++2y43se4=; b=BGgptDtbC98O8HPNcKzuh8SzpzseDoWAwqAuvxeMl5+PQw+hIv6eIhVDVIYPNMbRUH YhAqYsdNBtzGNUYrbqlsXSajGKrcVXPst4MXnc20xY9bgEPAzVSezRK9pjGgnDptNrrx tMeTvfbCh5bUN1PnQWRv6A0bIOEF+QmPzeB9k=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:subject:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to; bh=DwNWPar09tmwbBOFH5e04s+kJ/JX8VtAZy++2y43se4=; b=WnPN4nwGdYkiVbm4pcAIb97uKyb1TS88U+QPpaEKFcGN6iGfUtdK8PeJmiiag3jxop 5p3OrQxa6hC20E6wXhHXWj6po04zPP7XL6tvg1cHD1JFg8SFGCE5cXfL0bw/93mDVv6N x7rP8qqlWviVV6Lvm56w4qAKGtEABsAfHX6vRk5uSMi2EsU5KFvYFaOkXBjHQdnMUEuG vWPu+8hUeyJ2JVm/MoER/QNLXFRMguVy70guE9p/JskyWQp6nV7nAFa4FTcibfgsLiou kX6zsZJgMfPTiZ07GEoZnswff4zMw9tEkgwkk2EItoqPB1E9jn0C7IyehvrPF85u2/it wpaw==
X-Gm-Message-State: APjAAAVfb710Errsaj2j5VeXvazgcZ/qSEUlUgNJPR21Jeez7W6XS2Gz A/ASuuI5buTbvrr9XS/CVgVC3w==
X-Google-Smtp-Source: APXvYqykZmsrwWmYJ9XnfgjG0QwvL2woHj767NjP36GIeVNV2p42WDH2qeWUgVDvGwapVj/dNiei9g==
X-Received: by 2002:a5d:8d84:: with SMTP id b4mr5366430ioj.109.1551538756252; Sat, 02 Mar 2019 06:59:16 -0800 (PST)
Received: from ?IPv6:2607:f2c0:101:3:448a:aac4:532e:b0ae? ([2607:f2c0:101:3:448a:aac4:532e:b0ae]) by smtp.gmail.com with ESMTPSA id 7sm304029iow.58.2019.03.02.06.59.13 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Sat, 02 Mar 2019 06:59:14 -0800 (PST)
Content-Type: text/plain; charset="utf-8"
Mime-Version: 1.0 (Mac OS X Mail 12.2 \(3445.102.3\))
From: Joe Abley <jabley@hopcount.ca>
In-Reply-To: <yblsgw5x0iz.fsf@wu.hardakers.net>
Date: Sat, 02 Mar 2019 09:59:12 -0500
Cc: Michał Kępień <michal@isc.org>, Paul Hoffman <paul.hoffman@icann.org>, dnsop <dnsop@ietf.org>
Content-Transfer-Encoding: quoted-printable
Message-Id: <9D41FF86-E50C-4B8F-92CF-29CA5736AB14@hopcount.ca>
References: <47597960-3D11-4007-947D-19DBC7AF2BAC@icann.org> <20190219115435.GA4768@larwa.hq.kempniu.pl> <yblsgw5x0iz.fsf@wu.hardakers.net>
To: Wes Hardaker <wjhns1@hardakers.net>
X-Mailer: Apple Mail (2.3445.102.3)
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/kzW2g1HfJ-DaZqyPShgkzPYV5b8>
Subject: Re: [DNSOP] Adding more example configurations to draft-ietf-dnsop-7706bis
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 02 Mar 2019 14:59:20 -0000

On 2 Mar 2019, at 01:17, Wes Hardaker <wjhns1@hardakers.net> wrote:

> Michał Kępień <michal@isc.org> writes:
> 
>>    zone "." {
>>        type mirror;
>>    };
> 
> Cool feature, and thanks for adding it.  It'll certainly make writing
> LocalRoot config updates easier.
> 
> Questions though:

https://ftp.isc.org/isc/bind9/cur/9.13/doc/arm/Bv9ARM.ch05.html#zone_statement_grammar

The zone grammar specifies an allow-notify stanza for zone/type mirror:

> zone string [ class ] {
> 	type mirror;
> 	allow-notify { address_match_element; ... };

Zones can be transferred from an explicit set of transfer masters, but there is also a default:

> A default list of primary servers for the IANA root zone is built into named and thus its mirroring can be enabled using the following configuration:
> 
> zone "." {
>         type mirror;
> };
> 
> In order to set up mirroring of any other zone, an explicit list of primary servers needs to be provided using the masters option (see the section called “masters Statement Grammar” for details).


Joe