Slashdot Mirror


DNS Complexity

ChelleChelle writes "Paul Vixie of Internet Systems Consortium guides us on a journey into the sublime details of the domain name system. Although it contains just a few simple rules, DNS has grown into a system of enormous complexity. This article explores the supposed and true definitions of DNS, and shows some of the tension between the two definitions through the lens of the philosophy of Internet development protocol."

5 of 93 comments (clear)

  1. Wow. A real slashdot story by m0nkyman · · Score: 5, Funny

    Been a while since I've seen one of these.

    --
    ~ a low user id is no indication I have a clue what I'm talking about.
  2. Re:Public DNS is corrupt, but Private DNS is subli by Anonymous Coward · · Score: 1, Funny

    You lost me at "distinguished containers."

  3. Evolution by RancidMilk · · Score: 2, Funny

    I hear that the root DNS servers are monkeys. After all, at the root of all tree based architectures is monkeys. (I also hear that if you go to the edge of the internet, you'll fall off the edge of it!)

    1. Re:Evolution by bromoseltzer · · Score: 2, Funny

      Monkeys are the root of all evals?

      --
      Fiat Lux.
  4. Re:Public DNS is corrupt, but Private DNS is subli by mcrbids · · Score: 3, Funny


    Internally, I use DNS and I would never replace it. Just secure it. All my Internal Updates for my home DNS System work like this. Using the LDAPDNS system, my reverse lookup zones become distinguished containers, like

    relativeDomainName=1+zoneName=0.168.192.in-addr.ar pa,dc=0,dc=168,dc=192,dc=in-addr,dc=arpa


    You set this up for your freakin' home network!?!?!? Brother, there's this wild and wonderful thing out there called the world and you really, REALLY need to get a taste of it!

    Some of the highlights that you'd do well to consider:

    First, there's the Woman. Life with a good woman is a life with greater extremes. Good moments are way better, bad moments are way worse.

    Another good thing to try while roaming the wild, real world: Beer! This can be a good way to land a woman, if only for a night.

    Put the two together under the right circumstances, and you just might be able to experience perhaps the greatest pleasure of them all: SEX! Many would argue that this is the point of having a woman. I'd argue instead that basic physiology has the point belonging to the man, but I digress...

    Seriously, implementing an LDAP backend to DNS for a home network is about like using a jet engine for a ceiling fan. I'd love to know all the details of your implementation, since it would likely make a good candidate for submission to another good website.

    Lastly, to do "secure" DNS updates is pretty simple. I keep the DNS zone files on my laptop. All my DNS nameservers are configured identically, as master servers. I use a script to SCP the files to the nameservers when I do a DNS update. Stupid simple, excellent security a la SSH.

    --
    I have no problem with your religion until you decide it's reason to deprive others of the truth.