1
mirror of https://git.dn42.dev/wiki/wiki.git synced 2024-11-27 11:23:37 +01:00
wiki/Hierarchical-DNS.md

41 lines
2.5 KiB
Markdown
Raw Normal View History

2015-05-09 18:16:06 +02:00
DNS in the global internet is designed as a tree starting from "." and traveling outward in layers. Currently in DN42 dns is flat. This leads to issues when trying to debug problems and makes it difficult to delegate to subnets smaller than /24. Another problem that arises is having the root dns setup as an anycast. If one of the anycast roots is having problems it creates inconsistent errors for some users. This has led to the problem of when a user has a poorly configured anycast available to create their own root anycast.
2015-05-11 07:23:17 +02:00
The purpose of this project is to create a system of high quality dns roots. With them in place, an anycast resolver would only need to be a simple caching resolver that uses the roots to query.
2015-05-09 18:16:06 +02:00
## Hierarchy in DN42
- . (dot)
- arpa
- in-addr
- 172
2015-06-08 10:38:28 +02:00
- 20
2015-05-09 19:10:59 +02:00
- 21 (Reserved for future use)
- 22
- 23
2015-05-09 18:16:06 +02:00
- dn42
- {{dn42 domain names}}
- {{Future Top Level Domains?}}
2015-06-08 05:13:00 +02:00
- {{hack, ano, bit or other organisation TLDs?}}
- {{ICANN TLDs}}
2015-05-09 18:16:06 +02:00
Note: With this system it could be possible to merge the IANA root file.. but it would be beyond the scope of this project.
## Servers
2015-06-07 10:17:16 +02:00
For all of these servers they have a specific IP assigned, only respond to their authoritative zones, and do not allow recursion.
2015-05-09 18:16:06 +02:00
2015-06-08 05:17:32 +02:00
**{{name}}.root-servers.dn42** - This server is authoritative for "." (root zone). Is authorative for ICANN root as well. "172.in-addr.arpa" is delegated to ICANN, except rfc1918 zones which are delegated to dn42. The rest of rfc1918 as well as rfc4193 address space is delegated to dn42.
2015-05-09 18:16:06 +02:00
2015-06-08 04:57:49 +02:00
**{{name}}.zone-servers.dn42** - This server is authoritative for "dn42", "hack", .. This would be where the records for all forward dns nameservers would be. Similar to our current root setup.
2015-05-09 18:16:06 +02:00
2015-06-02 19:48:54 +02:00
**{{name}}.in-addr-servers.arpa** - This server is authoritative for "arpa", "in-addr", and each of the 172 zones for dn42 ip space. For non dn42 ip space NS records to the respective darknet would need to be registered.
2015-05-09 18:16:06 +02:00
2015-06-05 08:35:29 +02:00
**{{name}}.dn42-servers.arpa** - This server is authoritative for any RFC 2317 delegations. When generating for the rdns zones if nameservers are registered for a /25-28 inetnum the NS should point here to allow for proper delegation.
2015-05-09 18:16:06 +02:00
2015-06-08 05:26:15 +02:00
## Setup
2015-05-09 18:16:06 +02:00
2015-06-07 10:17:16 +02:00
Contact one of the root-servers.dn42 operators if you wish to set up a root/zone/dn42 server.
2015-06-08 04:59:44 +02:00
2015-06-08 05:27:38 +02:00
You may want to set up a resolver, see link below or use 172.23.0.53 directly.
2015-06-08 05:27:11 +02:00
2015-06-08 05:00:03 +02:00
Techical information available [here](https://nixnodes.net/wiki/n/DN42_DNS)