> >So how do I reconcile this statement with this false root .aus stuff > > Hmm, last time I looked The servers I sponsor for AURSC and those sponsored > by other members conformed to RFC 2010. Must be REAL root servers. Bzzzt. Wrong. See below for a list of things where your servers break this RFC. This is just from a quick look through - I'm sure there's probably more if I could be bothered looking. > I should also ask, Geoff are you running a Root Server? You're right Adam. After all, you obviously know a lot more about the Internet than Geoff does. After all, what has Geoff ever done for the good of the internet... (*) > As a point of interest, it's a breach of the Trade Practices Act to make a > misleading statement about a product. What, things like claiming you run an RFC2010 compliant Root server when you actually dont? > You statement "false root .aus" is in fact misleading because AURSC does > run fully RFC compliant root servers. This makes them ROOT SERVERS. They aren't fully RFC compliant root servers. This makes then .... ??? > Secondly .AUS is resolvable, thus it's mislwading to say it's false, > because it is in fact a truth, it does exist and it's visible and can be seen. Umm.. yeah.. whatever.. > So please be very careful when making claims about AURSC, they could lead > to an action under the Trade Practices Act. Oh I hope so, because if it did happen, I'm sure I'd know which way it would go... Scott. (*) Hint: that's sarcasm for those to slow to notice... ------------------------------------------------------------ Indented bits are from the fabled RFC 2010, non-indented are my comments/observations of rs{1,2,3}.aursc.ah.net. 2.3. Dedicated host. A name server host should have no other function, and no login accounts other than for system or network administrators. No other network protocols should be served by a name server host (e.g., SMTP, NNTP, FTP, et al). If login is permitted from other than the system console, then the login service must be by encrypted channel (e.g., Kerberized and encrypted rlogin/telnet, the secure shell (SSH), or an equivilent). marvin:~$ telnet rs3.aursc.ah.net. 25 Trying 203.29.72.14... Connected to rs3.aursc.ah.net. Escape character is '^]'. 220 jupiter ESMTP Sendmail 8.8.7/8.8.7; Thu, 2 Apr 1998 12:44:18 +1000 quit 221 jupiter closing connection Connection closed by foreign host. marvin:~$ telnet rs2.aursc.ah.net. 80 Trying 203.21.205.3... Connected to rs2.aursc.ah.net. Escape character is '^]'. HEAD / HTTP/1.0 HTTP/1.0 200 OK Date: Wed, 01 Apr 1998 23:30:58 GMT Server: Apache/1.1.3 Content-type: text/html Content-length: 416 Last-modified: Wed, 03 Jul 1996 06:18:16 GMT 2.6. Physical environment. A name server host must be located in a secure space such as a locked computer room or a data center with restricted access. The power supply should be redundant, using batteries, generators or some other means to protect against utility power failures. Network connectivity should be redundant, so that a single wide area line failure cannot completely isolate the name server host from the rest of the network. I can't see redundant links to rs1.aursc.ah.net or rs2.aursc.ah.net. 2.12. Recursion shall be disabled for queries. Not so for rs3.aursc.ah.net. 3.1. Host population. A server's location on the network should be such that it has a low IP hop count to a high number of end hosts. Duplication of service should be avoided, such that any given set of end hosts needs to have a low IP hop count to at most one authority server for any given zone. traceroute to rs1.aursc.ah.net (203.21.205.2), 30 hops max, 40 byte packets [...] 6 amaze1.lnk.telstra.net (139.130.33.6) 149.503 ms 144.59 ms 139.551 ms 7 rs1.aursc.ah.net (203.21.205.2) 139.617 ms 135.321 ms 129.415 ms traceroute to rs2.aursc.ah.net (203.21.205.3), 30 hops max, 40 byte packets [...] 6 amaze1.lnk.telstra.net (139.130.33.6) 210.112 ms 134.291 ms 129.446 ms 7 rs2.aursc.ah.net (203.21.205.3) 139.598 ms 165.017 ms 149.676 msReceived on Thu Apr 02 1998 - 00:20:44 UTC
This archive was generated by hypermail 2.3.0 : Sat Sep 09 2017 - 22:00:03 UTC