From mboxrd@z Thu Jan 1 00:00:00 1970 Message-ID: From: erik quanstrom Date: Wed, 4 Jul 2007 17:18:09 -0400 To: 9fans@cse.psu.edu Subject: Re: [9fans] dns In-Reply-To: MIME-Version: 1.0 Content-Type: text/plain; charset="US-ASCII" Content-Transfer-Encoding: 7bit Topicbox-Message-UUID: 91088290-ead2-11e9-9d60-3106f5b1d025 ah, we're out of phase 180 degrees. the particular problem i happened to catch the other day found nserver*.apple.com unreachable starting from the root. i tried with dig on linux, too. that didn't work either. but perhaps trying harder would make sense. i noticed that you aren't seeing negative responses to cname queries from the code. is that something particular to your environment or is that something we are likely to see, too.? unfortunately akadns uses cnames in their scheme. this really stinks. it seems that the timeout in such a case should depend on the name. (awful, no?) i wonder if it might be safe to replace small tts with the expire time in the soa. being on the other end of that a decade ago, i remember to maintaining a server at an old ip address for 2*expiretime to ensure that everybody had updated. it was suprising how long the old ip address was cached. - erik