“The DNS Camel”, or, the rise in DNS complexity
blog.powerdns.com
blog.powerdns.com
I worked with a customer who had a postage meter that refused to work correctly. After tons of troubleshooting, it turned out the issue is that the postage company had DNAME records in the mix ... and the DNS server on that network doesn't support DNAME at all. That troublesome DNS server is the (then, at least) current version of Samba.
I tried contacting the vendor to report the issue and, in typical fashion, I don't think I even got a ticket escalated to somebody who understood it. We put the postage meter on a VLAN with different DNS to work around it.
I've also seen major issues with US government websites advertising AAAA records for websites that aren't actually available on ipv6 - and again, no way to report/resolve it, we just disabled ipv6 on the workstation we file those reports from.
Both experiences made me realize how fragile DNS is, how hard it is to get anything fixed once you do diagnose it, and that a lot of "flakey" tech probably suffers from DNS issues outside either the vendor or consumer's control.
The Internet has become way too complex lately and DNS gets to carry the burden of gluing everything together. It may be wise to rethink its role, make it more general, and stack things on top of it, instead of inside.
As a side note, although I love AD DNS, MS are so slow to add new record support. I still can't add SSHFP records to Samba. :(
I can understand how Samba had no other option. Still, it's hard to blame this one on DNS complexity.
His way of framing the cost/benefit analyses in terms of who bears the costs and who receives the benefits seems sound. It’s nit enough for something to have benefits.