TERENA GA Claudio Allocchio Update on Root Servers Proposal First of all, a Disclaimer: First of all, a Disclaimer:

Slides:



Advertisements
Similar presentations
Axel Pawlik. LACNIC IV, 25 April 2003, Santiago. 1 Update from the RIPE NCC.
Advertisements

Axel Pawlik. LACNIC V, 19 November 2003, La Habana. 1 RIPE NCC Update.
L-Root: Expanding Distribution in Africa. 2 One of 13 root name servers containing Internet Protocol addresses Operated by ICANN using anycast technology.
World IPv6 Day - What did we learn? Robert Kisteleki
1 Securing BGP using DNSSEC Lutz Donnerhacke db089309: 1c1c 6311 ef09 d819 e029 65be bfb6 c9cb.
IPv4 Run Out and Transitioning to IPv6 Marco Hogewoning Trainer, RIPE NCC.
IP Version 6 Next generation IP Prof. P Venkataram ECE Dept. IISc.
Note Well Any submission to the IETF intended by the Contributor for publication as all or part of an IETF Internet-Draft or RFC and any statement made.
Draft-ietf-dhc-stateless-dhcpv6- renumbering-01 Tim Chown dhc WG, IETF 60, San Diego, August 2, 2004.
IPv6 Multihoming Support in the Mobile Internet Presented by Paul Swenson CMSC 681, Fall 2007 Article by M. Bagnulo et. al. and published in the October.
Database Update Johan Åhlén Assistant Manager and Denis Walker Business Analyst.
IPv6: The Future of the Internet? July 27th, 1999 Auug.
IANA Status Update ARIN XXVI meeting, Atlanta Barbara Roseman October 2010.
By: Mike Yerina. Internet Regulation: The Internet Regulation is a very important part of the world today and without it there would be huge changes in.
1 A survey of Internet Topology Discovery. 2 Outline Motivations Internet topology IP Interface Level Router Level AS Level PoP Level.
Anycast Jennifer Rexford Advanced Computer Networks Tuesdays/Thursdays 1:30pm-2:50pm.
PKI To The Masses IPCCC 2004 Dan Massey USC/ISI. 1 March PKI Is Necessary l My PKI related actions since arriving at IPCCC n Used an.
RIS Resource Allocations A special report on an endangered species …
Research on IP Anycast Secure Group Management Wang Yue Network & Distribution Lab, Peking University Network.
IANA Activities Update RIPE 68 Warsaw, Poland May 2014.
Transition of U.S. Commerce Department’s National Telecommunications and Information Administration (NTIA) Stewardship of the IANA Functions to the Global.
1 SIP WG meeting 73rd IETF - Minneapolis, MN, USA November, 2008 Return Routability Check draft-kuthan-sip-derive-00 Jiri
ADMINISTRATION HANDS-ON. Page 2 About the Hands-On This hands-on section is structured in a way, that it allows you to work independently, but still giving.
Got DNS? A review of Domain Name Services and how it impacts website developers. By Jason Baker Digital North.
UAEnic مركز الإمارات لمعلومات شبكة الإنترنت Presented By: Sultan Al Shamsi GCC ccTLD Working Group Meeting 7 th March 2004 Riyadh, KSA.
1 APNIC support for Internet development APT/PITA Regional Meeting on ICT for the Pacific August 2004, Nadi, Fiji Paul Wilson
Troubleshooting. Why Troubleshoot? What Can Go Wrong? –Misconfigured zone –Misconfigured server –Misconfigured host –Misconfigured network.
Network Tools TCP/IP interface configuration query - MAC (HW) address and IP address – Linux - /sbin/ifconfig – MS Windows – ipconfig/all 1.
ICANN Update Presented at APNIC38 16 September, 2014 Brisbane, AU Save Vocea Global Stakeholder Engagement, RVP Australasia / Pacific.
October 15, 2002Serguei A. Mokhov, 1 Intro to DNS SOEN321 - Information Systems Security.
APNIC Update RIPE 59 October Overview APNIC Services Update APNIC 28 policy outcomes APNIC Members and Stakeholder Survey Next APNIC Meetings.
1 Crashing the Net Steven M. Bellovin AT&T Labs Research
IANA Department Activities, RIPE 66, Dublin, Ireland May 2013 Elise Gerich.
University of Murcia 8 June 2011 IPv6 in Europe Jacques Babot European Commission - DG INFSO Directorate, Emerging Technologies and Infrastructures.
Utilities, Customers & SMS Rudi Leitner. Who in this room has a mobile phone? Who in this room has ever sent a text (SMS) message?
Measuring IPv6 Deployment Geoff Huston George Michaelson
Measuring IPv6 Deployment Geoff Huston George Michaelson
Claudio Allocchio - VP Technical Programme TERENA GA - Zagreb May The TERENA 3-years strategy David Willians President Claudio Allocchio VP.
APNIC Update AfriNIC 12 May 2010 Sanjaya Services Director, APNIC.
Regional Internet Registries Statistics & Activities IETF 55 Atlanta Prepared By APNIC, ARIN, LACNIC, RIPE NCC.
1 APNIC Update RIPE 54 Tallinn, Estonia May 2007.
Recommendations of Unique Local Addresses Usages draft-ietf-v6ops-ula-usage-recommendations-02 draft-ietf-v6ops-ula-usage-recommendations-02 Bing Liu(speaker),
Policies by FQDN WatchGuard Training.
RIPE NCC IRR training 4 February 2011 Zurich, Switzerland IPv6 Golden Networks Jeroen Massar Things to watch.
1 APNIC Update. 2 4th time at NZNOG … Let’s do something different this time.
Domain Name System Refs: Chapter 9 RFC 1034 RFC 1035.
ICANN Root Name Server System Advisory Committee March 2, 1999 SUNTEC Convention Center Singapore.
Juan Ortega 8/13/09 NTS300. “The problem with version 5 relates to an experimental TCP/IP protocol called the Internet Stream Protocol, Version 2, originally.
African Secret Working Group Secret Working Group report AfNOG XI June 2010 Africa in the GlobalNet.
Claudio Allocchio TERENA Technical Programme - Update General Assembly, 21 October 2005, Budapest 1 TERENA Technical Programme Update Claudio Allocchio.
Claudio Allocchio TERENA VP Technical Programme TERENA GA Copenhagen1 TERENA Planning Cycle Claudio.
Guidance for Running Multiple IPv6 Prefixes (draft-liu-v6ops-running-multiple-prefixes-02) Bing Liu, Sheng Jiang (Speaker), Yang Bo IETF91
Patrik Fältström. ITU Tutorial Workshop on ENUM. Feb 8, 2002, Geneva Explanation of ENUM (RFC 2916) Patrik Fältström Area Director, Applications Area,
IPv6 WORKING GROUP (IPv6 a.k.a. IPNGWG) August 2001 London IETF Bob Hinden / Nokia Steve Deering / Cisco Systems Co-Chairs.
Universal Acceptance of All TLDs ALAC 24 June 2012.
DNS Security 1. Fundamental Problems of Network Security Internet was designed without security in mind –Initial design focused more on how to make it.
Post IPv4 “completion” Making IPv6 incrementally deployable by making it backward compatible with IPv4. Alain Durand.
Site Multihoming for IPv6 Brian Carpenter IBM TERENA Networking Conference, Poznan, 2005.
Mirjam KuehneRIPE Meeting # 31 RIPE ncc Internet Administration and the RIPE NCC Daniel Karrenberg.
GEONET Brainstorming Document. Content Purpose of the document Brainstorming process / plan Proposed charter Assumptions Use cases Problem description.
TERENA GA - Zagreb May Sabine Jaume Rajaonia –TEC Member at large Root Server initiative TERENA GA - Zagreb May A joint action from.
Dhc WG 3/2/2004, IETF 59, Seoul. 3/2/2004dhc WG - IETF 59, Seoul2 Agenda Administrivia, Agenda bashing Ralph Droms 05 minutes DHCP Option for Proxy Server.
Troubleshooting. Why Troubleshoot? What Can Go Wrong? –Misconfigured zone –Misconfigured server –Misconfigured host –Misconfigured network.
Routing Loop Attack Using IPv6 Automatic Tunnels: Problem Statement and Proposed Mitigations (RFC 6324) Po-Kang Chen Oct 19,
Internet Governance: A View From the RIPE NCC Paul Rendek Director External Relations, RIPE NCC Ukrainian Internet Governance Forum 2-3 September 2011.
DNS Security Risks Section 0x02. Joke/Cool thing traceroute traceroute c
René Wilhelm & Henk Uijterwaal RIPE NCC APNIC21, 18 September 2018
An Update on Multihoming in IPv6 Report on IETF Activity
When Can We Start Dropping IPv4 on the DNS Root Servers?
Presentation transcript:

TERENA GA Claudio Allocchio Update on Root Servers Proposal First of all, a Disclaimer: First of all, a Disclaimer:

TERENA GA Claudio Allocchio Update on Root Servers Proposal First of all, a Disclaimer: First of all, a Disclaimer: I am NOT reponsible for the Denial of Service attack which clogged 9 of the 13 (actually 12) Root Servers 2 days ago… … and I'm reasonably sure none of our wg people was involved (… I still need to check with one individual …) :-)

TERENA GA Claudio Allocchio Update on Root Servers Proposal What happened since June 2002: The informal wg ( ) formed with NREN experts, DANTE, TERENA (2 TEC members) now includes also Daniel Karrenberg (RIPE NCC) and Gordon Lennox (EC);The informal wg ( ) formed with NREN experts, DANTE, TERENA (2 TEC members) now includes also Daniel Karrenberg (RIPE NCC) and Gordon Lennox We received a significative number of comments, and there were significative discussion with the "Internet at large" community: Why not an IPv6 (dual stack) Root Server ?We received a significative number of comments, and there were significative discussion with the "Internet at large" community: Why not an IPv6 (dual stack) Root Server ? Both TERENA GA and NRENPC are kept informed before any step forwardBoth TERENA GA and NRENPC are kept informed before any step forward

TERENA GA Claudio Allocchio Update on Root Servers Proposal We updated the report to clarify that:We updated the report to clarify that: The problems which were disclosed are NOT caused by the current Root Servers operators;The problems which were disclosed are NOT caused by the current Root Servers operators; The Internet routing behaviour (BGP) might seem "surviving" catastrophic events (see the Renesys report on Sept 11th BGP outages), but BGP is just one aspect of applications behaviour: getting a BGP announce does NOT mean you reach that destination. Our tests during that period show a much catastrophic effect if you consider "reachability" of Root Servers.The Internet routing behaviour (BGP) might seem "surviving" catastrophic events (see the Renesys report on Sept 11th BGP outages), but BGP is just one aspect of applications behaviour: getting a BGP announce does NOT mean you reach that destination. Our tests during that period show a much catastrophic effect if you consider "reachability" of Root Servers. Some specific Applications, like SSH, require apparently a client/server interaction where messages travel for less than 60 seconds. They were thus timing out while trying to resolve host names, even if some of the Root Servers where reachable and answered to queries (nslookup, hosts, dig).Some specific Applications, like SSH, require apparently a client/server interaction where messages travel for less than 60 seconds. They were thus timing out while trying to resolve host names, even if some of the Root Servers where reachable and answered to queries (nslookup, hosts, dig). This Root server will serve the whole IP commmunity (not restricted to R&D), but will be under NRENs controlThis Root server will serve the whole IP commmunity (not restricted to R&D), but will be under NRENs control

TERENA GA Claudio Allocchio Update on Root Servers Proposal Other Steps: We are preparing the specific technical proposal according to RFC2870;We are preparing the specific technical proposal according to RFC2870; We contacted RIPE NCC to ask them for being the remote operator (like for the London one) of the new Root Server we propose (D. Karrenberg is acting on this);We contacted RIPE NCC to ask them for being the remote operator (like for the London one) of the new Root Server we propose (D. Karrenberg is acting on this); When this is ready, we will contact also Jun Murai, ICANN, to discuss with him the proposal before submitting it officially to ICANN.When this is ready, we will contact also Jun Murai, ICANN, to discuss with him the proposal before submitting it officially to ICANN. Coordination with 6net activity on v6 DNS.Coordination with 6net activity on v6 DNS. … see our "action plan".… see our "action plan".

TERENA GA Claudio Allocchio Update on Root Servers Proposal News on the "anycast" proposal: Daniel Karrenberg officially announced at the September RIPE meeting that a new "anycast testbed proposal" is being prepared, including:Daniel Karrenberg officially announced at the September RIPE meeting that a new "anycast testbed proposal" is being prepared, including: Experiment to non-BIND solutionExperiment to non-BIND solution Experiment Security issues of the solution (secure-DNS)Experiment Security issues of the solution (secure-DNS) … many unknown issues until we try.… many unknown issues until we try. We will be one of the partners in that experiment:We will be one of the partners in that experiment: "we can afford experiments", can commercials?"we can afford experiments", can commercials?

TERENA GA Claudio Allocchio Root Servers Activity Update on Policy Issues: Is there any chance the R&D community can help moving the issue in ICANN "out of the paddock"?Is there any chance the R&D community can help moving the issue in ICANN "out of the paddock"? Some doubts, but let's try…Some doubts, but let's try… Community support to new initiatives in the field of "securing the Internet" can help…Community support to new initiatives in the field of "securing the Internet" can help… If we just succeed in making the anycast experiment happen and deploy, we already reached the scope.If we just succeed in making the anycast experiment happen and deploy, we already reached the scope. Still a lot of work to do to make people understand correctly Why, When, How we make this proposal.Still a lot of work to do to make people understand correctly Why, When, How we make this proposal.

TERENA GA Claudio Allocchio Update on Root Servers Proposal Contributions are welcome…