Heroku encourages use of www. prefix for domains after DDoS
status.heroku.com
status.heroku.com
I rely heavily on root domains in my printed materials (sending people to sproutrobot.com/water and such), but I'm starting to think redirecting users to www--so bookmarks, social media and the like point there and the majority of my users hit www first--is a good idea.
The inability to use CNAMEs in root level domains also affects other aspects, such as load balancing [1].
[1] - http://blog.y3xz.com/post/3920967238/the-anomaly-of-amazon-e...
https://forums.aws.amazon.com/thread.jspa?threadID=67849&...
http://faq.nearlyfreespeech.net/section/domainnameservice/ba...
In other words, doesn't a short TTL get you essentially the same thing?
Posterous has a similar problem last august. They urgently needed to change to a new IP, but all their clients were setup with A-records. Painful.
Off topic, what's the meaning of SOL in this context?
[1] http://www.etymonline.com/index.php?term=S.O.L. (one random link)
Just wanted to check if I'm missing something.
There's just no way to ever rely on a single IP and guarantee that it will be stable for consumers, without failover. Even your ISP gives you two nameservers for that reason.
As far as I am aware, no other browser supports it either.
This is also the promise of Amazon's Route 53 combined with their Elastic Load Balancing service which I hope will be released soon. Your DNS could dynamically serve A record IPs for the ELB, and you save the client the 2nd DNS resolution for the CNAME, faster and more dynamic.
For more: https://forums.aws.amazon.com/thread.jspa?threadID=63893&...
2.4 CNAME records
A CNAME record is not allowed to coexist with any other data. In
other words, if suzy.podunk.xx is an alias for sue.podunk.xx, you
can't also have an MX record for suzy.podunk.edu, or an A record, or
even a TXT record. Especially do not try to combine CNAMEs and NS
records like this!:
podunk.xx. IN NS ns1
IN NS ns2
IN CNAME mary
mary IN A 1.2.3.4
This is often attempted by inexperienced administrators as an obvious
way to allow your domain name to also be a host. However, DNS
servers like BIND will see the CNAME and refuse to add any other
resources for that name. Since no other records are allowed to
coexist with a CNAME, the NS entries are ignored. Therefore all the
hosts in the podunk.xx domain are ignored as well!Side affect of running on AWS, you can't use a "real" firewall.
Even then don't they use ha-proxy up front? I'm surprised this was an issue.
And often it's simply "because they can."