29
April 2003 ARIN XI Memphis, TN Memphis, TN Implementation Implementation Of 2002 Of 2002 - - 1: 1: Lame Delegations Lame Delegations Ed Lewis Research Engineer ARIN

Ans3 lame lewis

Embed Size (px)

Citation preview

Page 1: Ans3 lame lewis

April 2003ARIN XI Memphis, TNMemphis, TN

Implementation Implementation Of 2002Of 2002--1: 1: Lame DelegationsLame Delegations

Ed LewisResearch Engineer

ARIN

Page 2: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

BackgroundBackground

MAR 2002 – Policy formally proposedAPR 2002 – ARIN IXJUN 2002 – Measure extent of problemFurther discussion on email listsOCT 2002 – ARIN XNOV 2002 – Policy adoptedDEC 2002 – Implementation activity begins

Page 3: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Policy SummaryPolicy Summary

Page 4: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Policy SummaryPolicy SummaryFour Phases

Page 5: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Policy SummaryPolicy SummaryFour Phases• Test

Page 6: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Policy SummaryPolicy SummaryFour Phases• Test

Identify Lame Delegation

Page 7: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Policy SummaryPolicy Summary

Identify Lame Delegation

Four Phases• Test• Attempt Contact

Page 8: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Policy SummaryPolicy Summary

E-mail the in-addr.arpa POC

Identify Lame Delegation

Four Phases• Test• Attempt Contact

Page 9: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Policy SummaryPolicy Summary

E-mail the in-addr.arpa POC

Identify Lame Delegation

If No ContactProceed to Next Step

Four Phases• Test• Attempt Contact

Page 10: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Policy SummaryPolicy Summary

E-mail the in-addr.arpa POCE-mail the ASN POC

Identify Lame Delegation

Four Phases• Test• Attempt Contact

Page 11: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Policy SummaryPolicy Summary

E-mail the in-addr.arpa POCE-mail the ASN POC

Identify Lame Delegation

If No ContactProceed to Next Step

Four Phases• Test• Attempt Contact

Page 12: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Policy SummaryPolicy Summary

E-mail the in-addr.arpa POCE-mail the ASN POC

Telephone the in-addr.arpa or ASN POC

Identify Lame Delegation

Four Phases• Test• Attempt Contact

Page 13: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Policy SummaryPolicy Summary

E-mail the in-addr.arpa POCE-mail the ASN POC

Telephone the in-addr.arpa or ASN POC

Identify Lame Delegation

If No ContactProceed to Next Step

Four Phases• Test• Attempt Contact

Page 14: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Policy SummaryPolicy Summary

E-mail the in-addr.arpa POCE-mail the ASN POC

Telephone the in-addr.arpa or ASN POCPostal Mail the in-addr.arpa or ASN POC

Identify Lame Delegation

Four Phases• Test• Attempt Contact

Page 15: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Policy SummaryPolicy Summary

E-mail the in-addr.arpa POCE-mail the ASN POC

Telephone the in-addr.arpa or ASN POCPostal Mail the in-addr.arpa or ASN POC

Identify Lame Delegation

If No ContactProceed to Next Step

Four Phases• Test• Attempt Contact

Page 16: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Policy SummaryPolicy Summary

E-mail the in-addr.arpa POCE-mail the ASN POC

Telephone the in-addr.arpa or ASN POCPostal Mail the in-addr.arpa or ASN POC

Identify Lame Delegation

Four Phases• Test• Attempt Contact• Evaluate

Page 17: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Policy SummaryPolicy Summary

E-mail the in-addr.arpa POCE-mail the ASN POC

Telephone the in-addr.arpa or ASN POCPostal Mail the in-addr.arpa or ASN POC

Identify Lame Delegation

Wait 30 Days

Four Phases• Test• Attempt Contact• Evaluate

Page 18: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Policy SummaryPolicy Summary

E-mail the in-addr.arpa POCE-mail the ASN POC

Telephone the in-addr.arpa or ASN POCPostal Mail the in-addr.arpa or ASN POC

Identify Lame Delegation

Delegation Declared Lame

Wait 30 Days

Four Phases• Test• Attempt Contact• Evaluate

Page 19: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Policy SummaryPolicy Summary

E-mail the in-addr.arpa POCE-mail the ASN POC

Telephone the in-addr.arpa or ASN POCPostal Mail the in-addr.arpa or ASN POC

Identify Lame Delegation

Delegation Declared Lame

Wait 30 Days

Four Phases• Test• Attempt Contact• Evaluate• Remove Delegation

Page 20: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Policy SummaryPolicy Summary

E-mail the in-addr.arpa POCE-mail the ASN POC

Telephone the in-addr.arpa or ASN POCPostal Mail the in-addr.arpa or ASN POC

Identify Lame Delegation

• Remove NS Delegations• Update WHOIS Record

• Delegation Determined to be Lame• Evaluation Date of the Lame Delegation • Contact has been Attempted Unsuccessfully • Date Record Updated

Delegation Declared Lame

Update Record

Four Phases• Test• Attempt Contact• Evaluate• Remove Delegation

Wait 30 Days

Page 21: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Lame Delegation TestLame Delegation Test

Query for SOA record of zone►Try all IP addresses for each server of

zoneIn response, look for:►No Authoritative Answer (AA) bit set►AA bit set, but an empty answer section►AA bit set, but answer is not an SOA

record

Page 22: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

What is Not FlaggedWhat is Not Flagged

Not flagged as lame in this round of testing:►No IP address for name server

►No answer from server

This will be flagged in the future

Page 23: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

TimelineTimeline

15 Feb4-6 Mar

13 Mar18-20 Mar

27 Mar

Test1st Notific

ation

2nd Notification

TestTest

Page 24: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

ResultsResults

35,94455,28127 Mar

55,281198,21313 Feb

Flagged for Lameness

Zones Checked

13 Feb findings, percentage of servers►77% not flagged as lame (good, no address/answer)►19% not having an Authoritative Answer bit set►4% having an authoritative empty answer section►<1% having an authoritative non-SOA answer

Page 25: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Notification Results Notification Results

260216Total

39394th Week

102523rd Week

39402nd Week

80851st Week

EmailTelephone

Page 26: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Help Desk ActionsHelp Desk Actions

Determine the problem/exact question►Use “Lame” tool, BIND’s dig tool►Review results with customer

Explain expected resultsWalk through steps to correct ARIN DB entryRefer customer for further assistance:►Their local support►Vendor of their name server►BIND documentation (if using a BIND server)

Page 27: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

ObservationsObservations

People are interested►Want to correct problem

►Want to know what this is about

►Based on feedback from community:http://www.arin.net/registration/lame_delegations/index.html

This will be a deliberate process

Page 28: Ans3 lame lewis

April 2003ARIN XI Memphis, TNARIN XI Memphis, TN

Next StepsNext Steps

Continue notification as per policyUpdate database informationContinue testing for lamenessIdentify engineering issues with testingIdentify implementation issuesShare experiences with other registries

Page 29: Ans3 lame lewis

April 2003ARIN XI Memphis, TNMemphis, TN