New addresses for b.root-servers.net

William Herrin bill at herrin.us
Fri Jun 2 17:37:20 UTC 2023


On Fri, Jun 2, 2023 at 9:57 AM Jim <mysidia at gmail.com> wrote:
> A major concern would be if the IP address were eventually re-assigned to something else that
> ended up reporting false answers due to a malicious or misconfigured DNS service.

Hi Jim,

That's one reason I suggested intentionally making it a false
responder for the final year of its post-service hold. Return wildcard
A and AAAA records for all queries pointing to a web site which
responds to any URL with, "Hey buddy, your DNS software is so grossly
out of date that now it's broken and will stay broken until you fix
it."

Anybody still sending queries after that gets what they get and
deserves it -- as long as the time that passes until the final year is
long enough that only the most reckless and incompetent users are
still sending queries.

Regards,
Bill Herrin

--
William Herrin
bill at herrin.us
https://bill.herrin.us/


More information about the NANOG mailing list