1. DNS/RFC/2308
Negative caching in resolvers is no-longer optional, if a resolver caches anything it must also cache negative answers.
2. 更新情報
3. Nagative caching (ネガティブキャッシング)
"Negative caching" - the storage of knowledge that something does not exist. We can store the knowledge that a record has a particular value. We can also do the reverse, that is, to store the knowledge that a record does not exist. It is the storage of knowledge that something does not exist, cannot or does not give an answer that we call negative caching.
権威サーバから否定返答をする場合の決まり:SOAレコードをAuth. Sec. に入れよ。
3 - Negative Answers from Authoritative Servers
Name servers authoritative for a zone MUST include the SOA record of the zone in the authority section of the response when reporting an NXDOMAIN or indicating that no data of the requested type exists. This is required so that the response may be cached. The TTL of this record is set from the minimum of the MINIMUM field of the SOA record and the TTL of the SOA itself, and indicates how long a resolver may cache the negative answer. The TTL SIG record associated with the SOA record should also be trimmed in line with the SOA's TTL.
- authority sectionにSOAを含めなければならない。(MUST)
- これは返答をキャッシュに入れられるようにするためである。
このNSレコードを受け入れるには毒見が必要である。-- ToshinoriMaeno 2017-10-04 13:28:28
Negative responses without SOA records SHOULD NOT be cached as there is no way to prevent the negative responses looping forever between a pair of servers even with a short TTL.
3.1. ただし
delegationの条件をきちんと確認する必要がある。-- ToshinoriMaeno 2017-10-04 13:43:44
4. nxdomain 返答コード
定義の修正が必要だが、あるのか。 (RFC 1035のまま?)
-- ToshinoriMaeno 2015-05-04 02:57:08