openbsd-misc
[Top] [All Lists]

Re: BIND or DJBDNS?

To: misc@openbsd.org
Subject: Re: BIND or DJBDNS?
From: "D. J. Bernstein" <djb@cr.yp.to>
Date: 20 Feb 2001 03:48:15 -0000
References: <20010218233521.15054.qmail@web2005.mail.yahoo.com> <20010218200706.D13551@alcove.wittsend.com> <20010218192805.A29685@rt.fm> <20010218211553.E13551@alcove.wittsend.com>
Sender: owner-misc@openbsd.org
See http://cr.yp.to/qmail/warfield.html for background on Warfield.

As for DNSSEC: See http://cr.yp.to/djbdns/forgery.html.

As for A6: See http://cr.yp.to/djbdns/killa6.html. For further
background on DNS flaws, see http://cr.yp.to/djbdns/notes.html.

As for multiple A records in tinydns: This is completely trivial, of
course. It's explained in the FAQ, and in the tinydns-data reference
page, and in the upgrading-from-BIND page.

As for Warfield's claim that BIND 9.1 ``is running several of the root
name servers'': I have no idea where Warfield acquires his delusions.
The root servers and .com servers are not running BIND 9. (Perhaps this
has something to do with BIND 9's bloat, or BIND 9's tendency to crash.)

---Dan

<Prev in Thread] Current Thread [Next in Thread>