JApan Network Operators' Group
JANOG39は株式会社DMM.comラボのホストにより開催します。

IP fragmentation is coming! Are you ready?

Abstract:

From July 2017 through March 2018, for a certain period of time, Root DNS server's response packets will be over 1280 octet which cause IP fragmentation.

This is the effect of DNS Root Zone's DNSSEC key rollover (Root KSK rollover).

These large response packets will be sent back to any full-service resolver(cache DNS server).

If you are thinking "It's irrelevant to my resolver which is not validating DNSSEC", you are actually involved with this!

This LT will explain how to check your full-resolvers (and it's front network devices) which are capable to handle IP fragmentation and the important dates and durations of the Root DNS servers' response packets become larger.

-Overview of Root KSK rollover

-How to check if your full-resolver is capable to handle IP fragmentation

--Important dates and durations of the Root DNS servers' response packets become larger

-Communication channel and useful links

Presenter:

Yoshihiro Yoneya (Japan Registry Services Co., Ltd.)