<?xml version="1.0" encoding="UTF-8"?>
  <?xml-stylesheet type="text/xsl" href="rfc2629.xslt" ?>
  <!-- generated by https://github.com/cabo/kramdown-rfc2629 version 1.3.37 -->

<!DOCTYPE rfc SYSTEM "rfc2629.dtd" [
]>

<?rfc toc="yes"?>
<?rfc tocdepth="4"?>
<?rfc sortrefs="yes"?>
<?rfc symrefs="yes"?>

<rfc ipr="trust200902" docName="draft-iab-arpa-authoritative-servers-00" category="info" updates="RFC3172">

  <front>
    <title abbrev="Nameservers for the .arpa Domain">Nameservers for the Address and Routing Parameter Area ("arpa") Domain</title>

    <author initials="K." surname="Davies" fullname="Kim Davies">
      <organization abbrev="IANA">Internet Assigned Numbers Authority</organization>
      <address>
        <postal>
          <street>PTI/ICANN</street> <street>12025 Waterfront Drive</street>
          <city>Los Angeles</city>
          <code>90094</code>
          <country>United States of America</country>
        </postal>
        <email>kim.davies@iana.org</email>
      </address>
    </author>
    <author initials="J." surname="Arkko" fullname="Jari Arkko">
      <organization abbrev="Ericsson">Ericsson Research</organization>
      <address>
        <postal>
          <street>02700 Kauniainen</street>
          <country>Finland</country>
        </postal>
        <email>jari.arkko@ericsson.com</email>
      </address>
    </author>

    <date year="2021" month="April" day="23"/>

    
    
    <keyword>Internet-Draft</keyword>

    <abstract>


<t>This document describes revisions to operational practices to separate
function of the “arpa” top-level domain in the DNS from its historical
operation alongside the DNS root zone.</t>



    </abstract>


  </front>

  <middle>


<section anchor="introduction" title="Introduction">

<t>The “arpa” top-level domain <xref target="RFC3172"/> is designated as an
“infrastructure domain” to support techniques defined by Internet
standards. Zones under the “arpa” domain provide various mappings, such
as IP addresses to domain names and E.164 numbers to URIs. It also
contains special use names such as “home”, which is a non-unique name
used in residential networks.</t>

<t>Historically, the “arpa” zone has been hosted on almost all of the
root name servers, and <xref target="RFC3172"/> envisages the “arpa” domain to be
“sufficiently critical that the operational requirements for the root
servers apply to the operational requirements of the “arpa” servers”. To
date, this has been implemented by serving the “arpa” domain directly on
a subset of the root server infrastructure.</t>

<t>This bundling of root server and “arpa” server operations has entwined
management of the zones contents and their infrastructure. As a result,
some proposals under consideration by the IETF involving the “arpa” zone
have been discarded due to the risk of conflict with root operations.</t>

<t>The separation described in this document resolves operational impacts
of synchronizing edits to the root zone and the “arpa” zone by
eliminating the current dependency and allowing more tailored operations
based on the unique requirements of each zone.</t>

</section>
<section anchor="requirements-for-the-arpa-zone" title="Requirements for the “arpa” zone">

<t>The “arpa” domain continues to play a role in critical Internet
operations, and this change does not propose weakening operational
requirements described in <xref target="RFC3172"/> for the domain. Future operational
requirements for the “arpa” domain are encouraged to follow strong
baseline requirements such as those documented in <xref target="RFC7720"/>.</t>

<t>Changes to the administration of the “arpa” zone do not alter the
management practices of other zones delegated within the “arpa”
namespace. For example, “ip6.arpa” would continue to be managed in
accordance with <xref target="RFC5855"/>.</t>

</section>
<section anchor="transition-process" title="Transition Process">

<t>The process will dedicate new hostnames to the servers authoritative for
the “arpa” zone, but will initially serve the “arpa” zone from the same
hosts.</t>

<t>Once completed, subsequent transitional phases could include using
new hosts to replace or augment the existing root server hosts, and
separation of the editing and distribution of the “arpa” zone from
necessarily being connected to the root zone. Any future management
considerations regarding how such changes may be performed are beyond
the scope of this document.</t>

<section anchor="dedicated-nameserver-hostnames" title="Dedicated nameserver hostnames">

<t>Consistent with the use of the “arpa” namespace itself to host name
servers for other delegations in the “arpa” zone (<xref target="RFC5855"/>), this
document specifies a new namespace of “ns.arpa”, with the
nameserver set for the “arpa” zone to be labelled as follows:</t>

<figure><artwork><![CDATA[
   a.ns.arpa
   b.ns.arpa
   c.ns.arpa
   ...
]]></artwork></figure>

<t>Dedicated hostnames eliminate a logical dependency that requires the
coordinated editing of the nameservers for the “arpa” zone and the root
zone. This component of this transition does not require the underlying
hosts that provide “arpa” name service (that is, the root servers) be
altered. The “arpa” zone will initially map the new hostnames to the
same IP addresses that already provide service under the respective
hostnames within root-servers.net.</t>

<t>Because these nameservers are completely in-bailiwick of the “arpa” zone,
they will require glue records in the root zone. This is consistent with
current practice and requires no operational changes to the root zone.</t>

</section>
<section anchor="separation-of-infrastructure" title="Separation of infrastructure">

<t>After initially migrating the “arpa” zone to use hostnames that are not shared
with the root zone, the underlying name service is expected to evolve such that
it no longer directly aligns to a subset of root server instances. With no
shared infrastructure between the root servers and the “arpa” servers, future
novel applications for the “arpa” zone may be possible.</t>

<t>Any subsequent changes to the parties providing name service for the
zone is considered a normal management responsibility, and would be
performed in accordance with <xref target="RFC3172"/>.</t>

</section>
<section anchor="zone-administration" title="Zone administration">

<t>Publication of the “arpa” zone file to the authoritative “arpa” name
servers is currently undertaken alongside the root zone maintenance functions.
Upon the separation of the “arpa” infrastructure from the root server
infrastructure, publication of the “arpa” zone no longer necessarily needs
to be technically linked or inter-related to the root zone publication
mechanisms.</t>

</section>
<section anchor="conclusion-of-process" title="Conclusion of process">

<t>Full technical separation of “arpa” operations from root operations
minimally requires the following to be satisfied:</t>

<t><list style="symbols">
  <t>The “arpa” zone no longer shares any hostnames in its NS-set with the root
zone;</t>
  <t>The hosts that provide authoritative name service are not the same hosts
as the root servers, do not share any IPv4 or IPv6 addresses with the
root servers, and are sufficiently separately provisioned such
that any unique “arpa” zone requirements can be deployed without affecting
how root zone service is provided;</t>
  <t>The editorial and publication process for the “arpa” zone has any common
dependencies with the root zone process removed, so that the “arpa” zone 
can be managed, edited and provisioned wholly independently of the
root zone.</t>
</list></t>

<t>Such separation is ultimately sought to allow for novel uses of
the “arpa” zone without the risk of inadvertantly impacting root zone and root
server operations. It is recognized that achieving this state requires a
deliberative process involving significant coordination to ensure impacts
are minimized.</t>

</section>
</section>
<section anchor="iana-considerations" title="IANA Considerations">

<t>The IANA shall coordinate the creation of the “ns.arpa” namespace and
populate it with address records that reflect the IP addresses of the
contemporary root servers documented within “root-servers.net” as its
initial state.</t>

<t>The IANA will initially migrate the 12 NS records for the “arpa” zone
to point to their respective new entries in the “ns.arpa” domain.</t>

<t>Subsequently, the IAB and IANA will consult and coordinate with all relevant
parties on activity to reduce or eliminate reliance upon root zone
and root server infrastructure for serving the “arpa” zone. Such
changes will be performed in compliance with <xref target="RFC3172"/> and shall
be conducted with all due care and deliberation to mitigate potential
impacts on critical infrastructure.</t>

</section>
<section anchor="security-considerations" title="Security Considerations">

<t>The security of the “arpa” zone is not necessarily impacted by any
aspects of these changes. Robust practices associated with administering
the content of the zone (including signing operations) as well as its
distribution will continue to be necessary.</t>

</section>


  </middle>

  <back>

    <references title='Normative References'>





<reference anchor='RFC3172' target='https://www.rfc-editor.org/info/rfc3172'>
<front>
<title>Management Guidelines &amp; Operational Requirements for the Address and Routing Parameter Area Domain (&quot;arpa&quot;)</title>
<author fullname='G. Huston' initials='G.' role='editor' surname='Huston'><organization/></author>
<date month='September' year='2001'/>
<abstract><t>This memo describes the management and operational requirements for the address and routing parameter area (&quot;arpa&quot;) domain.  This document specifies an Internet Best Current Practices for the Internet Community, and requests discussion and suggestions for improvements.</t></abstract>
</front>
<seriesInfo name='BCP' value='52'/>
<seriesInfo name='RFC' value='3172'/>
<seriesInfo name='DOI' value='10.17487/RFC3172'/>
</reference>




    </references>

    <references title='Informative References'>





<reference anchor='RFC5855' target='https://www.rfc-editor.org/info/rfc5855'>
<front>
<title>Nameservers for IPv4 and IPv6 Reverse Zones</title>
<author fullname='J. Abley' initials='J.' surname='Abley'><organization/></author>
<author fullname='T. Manderson' initials='T.' surname='Manderson'><organization/></author>
<date month='May' year='2010'/>
<abstract><t>This document specifies a stable naming scheme for the nameservers that serve the zones IN-ADDR.ARPA and IP6.ARPA in the DNS.  These zones contain data that facilitate reverse mapping (address to name).  This memo documents an Internet Best Current Practice.</t></abstract>
</front>
<seriesInfo name='BCP' value='155'/>
<seriesInfo name='RFC' value='5855'/>
<seriesInfo name='DOI' value='10.17487/RFC5855'/>
</reference>



<reference anchor='RFC7720' target='https://www.rfc-editor.org/info/rfc7720'>
<front>
<title>DNS Root Name Service Protocol and Deployment Requirements</title>
<author fullname='M. Blanchet' initials='M.' surname='Blanchet'><organization/></author>
<author fullname='L-J. Liman' initials='L-J.' surname='Liman'><organization/></author>
<date month='December' year='2015'/>
<abstract><t>The DNS root name service is a critical part of the Internet architecture.  The protocol and deployment requirements for the DNS root name service are defined in this document.  Operational requirements are out of scope.</t></abstract>
</front>
<seriesInfo name='BCP' value='40'/>
<seriesInfo name='RFC' value='7720'/>
<seriesInfo name='DOI' value='10.17487/RFC7720'/>
</reference>




    </references>


<section numbered="false" anchor="acknowledgments" title="Acknowledgments">

<t>Thank you Alyssa Cooper, Michelle Cotton, Lars-Johan Liman, Wes Hardaker,
Ted Hardie, Paul Hoffman, Russ Housley, Oscar Robles-Garay, Duane
Wessels and Suzanne Woolf for providing review and feedback.</t>

</section>


  </back>

<!-- ##markdown-source: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-->

</rfc>

