DNS is Simple. DNS is Hard

(wespiser.com)

8 points | by wespiser_2018 5 days ago ago

5 comments

  • gmuslera 12 minutes ago

    It is simple if you play it simple, having reasonable TTLs and expectations around it (i.e. well behaved resolvers and caches should take up to TTL time to consider to refresh the record after a change, and you should not worry about badly behaved ones). But you should understand what goes below, or else things you don't expect may happen.

    Anyway, DNS is far more than direct resolution, the article didn't scratched reverse resolution, DNSSEC, views, setting secondary servers or other things that may go deeply wrong in different ways.

  • croemer 3 hours ago

    The AI figures of speech make for painful reading. I don't want to read dozens of examples of what something is not. Just say what it is.

  • rschiavone 3 hours ago

    The AI "art" at the top is really unnecessary and off-putting.

  • wespiser_2018 5 days ago

    Author here - Curious if others have run into DNS problems at work, or struggled with DNS migrations and ran into unforeseen issues.

    • mediumsmart 4 days ago

      I did not know dns keys expire and that I have to resign them. Now I have a daily cron job that does that.