Oh, and you know what? It's gonna seem that way in ten years too. Network Solutions once had (uh huh) a working alternative root server and the "right" people knew about it; it was their other option besides signing with ICANN - which they were under no legal, moral or ethical obligation to do. The VP of ops there at the time told me "you have no understanding of the power of the trademark lobby" and "if we told people about that root server the government told us they'd have the Army take us over as a point of national security. So, if the TM boys can influence even the military how hard do you think it really is to get a loaded congressional committee to say what they want you to hear? The CEO of NSI at the time told me last year "The NRA, big tobacco and labor unions are amateurs in DC compared to the TM people who move in the shadows and leave no fingerprints".
I've been bleating this for over a decade. Now do you believe me? There are a very large number of significant DNS servers that will all do X or Y if it makes sense, the problem is Vixie and his utter and unshakable belief in "a catholic DNS that originates at IANA". Now, having allocated the last block of v4 space, IANA's job is effectively over. It's done. It can go anywhere and is back to being a part time job just like the early days when Jon made it up. What's going to happen next is the governments two green field projects (the emergency responder network and the national broadband network) have already had solicitations go out and have now 7 providers of database services to for those networks (MS, Google, the usual group of suspects) and when the USG winds down the failure that is ICANN it'll finesse "the IANA task" into one of those and eventually Microsoft will get a vote to tell Pal Vixie what to do, which is something he's been frightened of since 1985. IMHO DHT DNS is the way to go and just walk away from this fucking mess. It's too much work to save it and would be easier to start from scratch. Given Bernsteins breakthroughs in elliptical curve cryptography some CurveCP connected DHT DNS sevrers would deliver all the promises the I* boys have made over the years but never delivered on. You win Paul, port 53 is yours, we'll just call is UUCP2 to be clear it's not "DNS" but gethostbyname now takes an argument. Or something. But there's a reason I don't spend any time on this ICANN nonsense, it's not going anywhere, never was going to, never will. That's by both design and implementation. |
|
|