@lispi314 @leah It's not insufficiently redundant. It's working as intended, failing-closed. Somebody installed a wrong key that's not trusted, and so we're rejecting the bogus records signed by it.
Conversation
Notices
-
Embed this notice
Rich Felker (dalias@hachyderm.io)'s status on Wednesday, 06-May-2026 06:26:17 JST
Rich Felker
-
Embed this notice
LisPi (lispi314@udongein.xyz)'s status on Wednesday, 06-May-2026 06:26:18 JST
LisPi
@leah That mostly means it's insufficiently redundant.
In my view, it's more of a decentralized network, since outside of caching resolvers the data is replicated basically nowhere. -
Embed this notice
Leah Neukirchen (leah@blahaj.social)'s status on Wednesday, 06-May-2026 06:26:19 JST
Leah Neukirchen
DNS is a distributed system in the sense of Lamport: one in which the failure of a computer you didn't even know existed can render your own computer unusable.
-
Embed this notice