[Add] R1.1 (was RE: WGLC for draft-ietf-add-dnr)

mohamed.boucadair@orange.com Thu, 10 March 2022 06:32 UTC

Return-Path: <mohamed.boucadair@orange.com>
X-Original-To: add@ietfa.amsl.com
Delivered-To: add@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A9A2F3A0A74 for <add@ietfa.amsl.com>; Wed, 9 Mar 2022 22:32:52 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.107
X-Spam-Level:
X-Spam-Status: No, score=-7.107 tagged_above=-999 required=5 tests=[AC_DIV_BONANZA=0.001, BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H2=-0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, UNPARSEABLE_RELAY=0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=orange.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id QBDj7tJA-FjY for <add@ietfa.amsl.com>; Wed, 9 Mar 2022 22:32:47 -0800 (PST)
Received: from relais-inet.orange.com (relais-inet.orange.com [80.12.70.35]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 9EF823A0A67 for <add@ietf.org>; Wed, 9 Mar 2022 22:32:47 -0800 (PST)
Received: from opfednr02.francetelecom.fr (unknown [xx.xx.xx.66]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits)) (No client certificate requested) by opfednr21.francetelecom.fr (ESMTP service) with ESMTPS id 4KDfPn5kZsz5w3Y; Thu, 10 Mar 2022 07:32:45 +0100 (CET)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=orange.com; s=ORANGE001; t=1646893965; bh=S/JP8T2anhuLrM6UfUVJ3vHT/kSNXMEXZegXoGtZc8c=; h=From:To:Subject:Date:Message-ID:Content-Type:MIME-Version; b=CAZ7lTXKat9WXUaXb3HYzx1+6RqyLVXgd6t3zgR59A2h3qNiDXtUKzRzlH7FMW5Pi ZS7h9CmOAnToGx8Gd2gJq7MGyJpIF3i7h9U6lNHEt0dmsQt/djO5DUZQomZoPFY6Tb fv9pPOucKxI3ar6xENtdNG0EpHI3sVPfZi/8MeChtb7cjUVgwcAiwr4GYu9e7wVUZX cu3UdUFjChniuQVIAG6Ku88+/BngG9e9NQx3vtdZDjcA3Tacb4202tntZPO3fKqI+u ou8ub8ZnxH/LH/rjBOiSYex8JOayEJtFSMJEi9eXwhGDol8k7jmKS4HUDR6jmtfFlz xVjEMhcQL0DTw==
From: mohamed.boucadair@orange.com
To: Chris Box <chris.box.ietf@gmail.com>, "Deen, Glenn" <Glenn_Deen=40comcast.com@dmarc.ietf.org>
CC: "add@ietf.org" <add@ietf.org>
Thread-Topic: R1.1 (was RE: [Add] WGLC for draft-ietf-add-dnr)
Thread-Index: Adg0R1nNR84VFiNWTa2k7r/NyGJLiw==
Content-Class:
Date: Thu, 10 Mar 2022 06:32:45 +0000
Message-ID: <4681_1646893965_62299B8D_4681_127_1_fabdd89086d04b3ba3e0de4860943076@orange.com>
Accept-Language: fr-FR, en-US
Content-Language: fr-FR
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Enabled=true; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SetDate=2022-03-10T06:21:51Z; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Method=Privileged; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Name=unrestricted_parent.2; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SiteId=90c7a20a-f34b-40bf-bc48-b9253b6f5d20; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ActionId=88a99d5b-569c-463d-9e67-2792018df631; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ContentBits=0
x-originating-ip: [10.115.27.51]
Content-Type: multipart/alternative; boundary="_000_fabdd89086d04b3ba3e0de4860943076orangecom_"
MIME-Version: 1.0
Archived-At: <https://mailarchive.ietf.org/arch/msg/add/0g__h_v5v_OuxrYiPRlmi0XJgpc>
Subject: [Add] R1.1 (was RE: WGLC for draft-ietf-add-dnr)
X-BeenThere: add@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Applications Doing DNS <add.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/add>, <mailto:add-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/add/>
List-Post: <mailto:add@ietf.org>
List-Help: <mailto:add-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/add>, <mailto:add-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 10 Mar 2022 06:32:53 -0000

Hi Chris,

Thank you for the comments and for sharing this assessment.

I will reply to each of the comments in a separate message for convenience.

Please see inline.

Cheers,
Med

De : Add <add-bounces@ietf.org> De la part de Chris Box
Envoyé : mercredi 9 mars 2022 18:36
À : Deen, Glenn <Glenn_Deen=40comcast.com@dmarc.ietf.org>
Cc : add@ietf.org
Objet : Re: [Add] WGLC for draft-ietf-add-dnr

Hi everyone.

I've assessed DNR against relevant parts of draft-ietf-add-requirements.
Here's the first.

    +=============+===================================================+

    | Requirement | Description                                       |

    +=============+===================================================+

    | R1.1        | Discovery SHOULD provide a local network the      |

    |             | ability to announce to clients a set of, or       |

    |             | absence of, designated resolvers.                 |

It's not clear to me how you use DNR to advertise the absence of local encrypted DNS. Are we saying the router should send a frame with zero option length (if that is considered a multiple of 16), and zero ADN length? If yes, we should write that. If that's a bad design, we should think about what is better.

[Med] A network that does not support an encrypted DNS scheme (or configured to not supply an encrypted DNS to a requestor (*)) won’t advertise the DNS options when servicing that host. This is the normal behavior that is followed for configuration information (refer to rfc8415#section-18.3).

(*) the exact procedure for this case is specified in: https://datatracker.ietf.org/doc/draft-boucadair-opsawg-add-encrypted-dns/.




_________________________________________________________________________________________________________________________

Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc
pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler
a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration,
Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci.

This message and its attachments may contain confidential or privileged information that may be protected by law;
they should not be distributed, used or copied without authorisation.
If you have received this email in error, please notify the sender and delete this message and its attachments.
As emails may be altered, Orange is not liable for messages that have been modified, changed or falsified.
Thank you.