[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [69ATTENDEES] DHCP



On Jul 24, 2007, at 12:17, Iljitsch van Beijnum wrote:
On 24-jul-2007, at 10:19, Jun-ichiro itojun Hagino wrote:

good reason to use IPv6 entirely, as long as you have IPv6 DNS server:-P

[...] A good reason to make sure that it's possible to run IPv6 with all that that entails (= DNS resolver addresses) without the need to run DHCPv6 if running DHCPv6 isn't specifically desired.

dns-sd -Q _domain._udp.local SRV --> /etc/resolv.conf

Quite a thrilling proposal from a security perspective, but it's worth contrasting with the idea of reserving a global IPv6 anycast address for DNS resolving proxy servers. At least with the latter, a public network operator has an easier time keeping rogue DNS resolvers from poisoning the network. On the other hand, the former *is* clearly BETTER THAN NOTHING, which is what we have now.


--
james woodyatt <jhw@apple.com>
member of technical staff, communications engineering