Re: [Add] Updated charter proposal for ADD

"Smith, Kevin, Vodafone Group" <Kevin.Smith@vodafone.com> Thu, 16 January 2020 12:43 UTC

Return-Path: <Kevin.Smith@vodafone.com>
X-Original-To: add@ietfa.amsl.com
Delivered-To: add@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D9A9012004C for <add@ietfa.amsl.com>; Thu, 16 Jan 2020 04:43:36 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.799
X-Spam-Level:
X-Spam-Status: No, score=-1.799 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, HTTPS_HTTP_MISMATCH=0.1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id t_8-11m7iy38 for <add@ietfa.amsl.com>; Thu, 16 Jan 2020 04:43:32 -0800 (PST)
Received: from mail1.bemta25.messagelabs.com (mail1.bemta25.messagelabs.com [195.245.230.68]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 16032120052 for <add@ietf.org>; Thu, 16 Jan 2020 04:43:31 -0800 (PST)
Received: from [46.226.52.203] (using TLSv1.2 with cipher DHE-RSA-AES256-GCM-SHA384 (256 bits)) by server-4.bemta.az-b.eu-west-1.aws.symcld.net id C8/66-23082-17A502E5; Thu, 16 Jan 2020 12:43:29 +0000
Authentication-Results: mx.messagelabs.com; dkim=none (message not signed); dmarc=fail (p=none sp=none adkim=r aspf=r) header.from=vodafone.com
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFprKLsWRWlGSWpSXmKPExsWi75nTrVsQpRB nsHudgMX/0+vYLD6/XsBs8WnuAXaLh2cmsFj0THrF7MDqsenaTlaP650tzB4nll1h9Viy5CeT x5qGygDWKNbMvKT8igTWjGVPZrEWTOxlqmhrms/awHikk6mLkZNDSGA7o8TX+eFdjFxA9mFGi TfXVjBCOECJW/MeM0M4Fxklns1ewwbhTGSSWLxzKjuEc59RonfNHFaQYWwC9hKX1r0As0UEzj NK7DuqCGILCxhLbH8+jREibiLx+t9PdgjbSeLdnzlgh7AIqErs+HwcrIZXIEZi2vHJTBALDjF KXL3TzAyS4ARK3L39gw3EZhSQlfjSuBosziwgLnHryXywQRICAhJL9pxnhrBFJV4+/scKMohX 4CGLRMOELhaI5iiJnc862CCKFCXeHf7OCGHLSlya3w1l+0rs/TcRapCWxJeGy1ALsiWWnF4BF VeTuPGmA8jmALJlJJ5/jAfZJSGwlEXi5bSD0CBOkZi7cRs7RL2cxKrehywQtozEgxvb2SYwGs xC8gOEnSexqW0/+yxwYAhKnJz5hGUW0ApmAU2J9bv0IUoUJaZ0P2SHsDUkWufMZUcWX8DIvor RIqkoMz2jJDcxM0fX0MBA19DQSNfQ0kzXyMBIL7FKN0kvtVS3PLW4RNdQL7G8WK+4Mjc5J0Uv L7VkEyMw9aUUHDm1g/HQ17d6hxglOZiURHlF9sjGCfEl5adUZiQWZ8QXleakFh9ilOHgUJLgb YxQiBMSLEpNT61Iy8wBpmGYtAQHj5IIrxUwFQvxFhck5hZnpkOkTjEGckx4OXcRM8fmX/OAZP vTBUDy3c/FQPLjqiVA8juYPDJ36SJmIZa8/LxUKXHelyB7BEAGZZTmwa2B5ZZLjLJSwryMDAw MQjwFqUW5mSWo8q8YxTkYlYR5RSKBpvBk5pXAXfMK6FAmoEMnOMuBHFqSiJCSamCSbJkX/Sz9 9cUPHFFzZPX0itXstrybcjj7r5K4rIes3I097RnrY3i6mm792se0NMugmsPPrYb7puya+U+7l 2yxEzm54c6y3usPmW+GJooHWYedzpgtNlHrr6eVj5vSJuGG7bPuCxscStMXNrtz+Gus+vrXnp PkXjdOKvl37w7vpnPc5odWcf61v3jor8jmGNk9M79NcVb5vy3W9M4Lh6TTjTcb2Q8U6TytXqs ho5i/5WPu5ecdF3cZsHmL6Ldrtulde/DnnoDu03A2jz+CIt1tMzaWXOE5duDTv1OqraV63pqf xIzSFcztdEUW2pjOZSj2Pv+1/Oedij9y29aUlbJmpTc0HftRHFf7Rdxzg7cSS3FGoqEWc1FxI gDnZWXRqAQAAA==
X-Env-Sender: Kevin.Smith@vodafone.com
X-Msg-Ref: server-12.tower-291.messagelabs.com!1579178604!613165!14
X-Originating-IP: [47.73.108.139]
X-SYMC-ESS-Client-Auth: outbound-route-from=pass
X-StarScan-Received:
X-StarScan-Version: 9.44.25; banners=-,-,-
X-VirusChecked: Checked
Received: (qmail 17644 invoked from network); 16 Jan 2020 12:43:28 -0000
Received: from vgdpm13vr.vodafone.com (HELO voxe01hw.internal.vodafone.com) (47.73.108.139) by server-12.tower-291.messagelabs.com with DHE-RSA-AES256-GCM-SHA384 encrypted SMTP; 16 Jan 2020 12:43:28 -0000
Received: from VOEXH08W.internal.vodafone.com (47.73.211.206) by edge1.vodafone.com (195.232.244.46) with Microsoft SMTP Server (TLS) id 15.0.1497.2; Thu, 16 Jan 2020 13:43:26 +0100
Received: from voxe02hw.internal.vodafone.com (195.232.244.47) by VOEXH08W.internal.vodafone.com (47.73.211.212) with Microsoft SMTP Server (TLS) id 15.0.1497.2; Thu, 16 Jan 2020 13:43:26 +0100
Received: from VOEXH09W.internal.vodafone.com (47.73.211.213) by edge1.vodafone.com (195.232.244.47) with Microsoft SMTP Server (TLS) id 15.0.1497.2; Thu, 16 Jan 2020 13:43:25 +0100
Received: from EUR04-HE1-obe.outbound.protection.outlook.com (172.17.213.45) by VOEXH09W.internal.vodafone.com (47.73.211.213) with Microsoft SMTP Server (TLS) id 15.0.1497.2; Thu, 16 Jan 2020 13:43:25 +0100
Received: from AM0PR05MB5730.eurprd05.prod.outlook.com (20.178.115.152) by AM0PR05MB4308.eurprd05.prod.outlook.com (52.134.124.27) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2644.19; Thu, 16 Jan 2020 12:43:23 +0000
Received: from AM0PR05MB5730.eurprd05.prod.outlook.com ([fe80::8850:d3a3:a063:cfb7]) by AM0PR05MB5730.eurprd05.prod.outlook.com ([fe80::8850:d3a3:a063:cfb7%5]) with mapi id 15.20.2644.015; Thu, 16 Jan 2020 12:43:23 +0000
From: "Smith, Kevin, Vodafone Group" <Kevin.Smith@vodafone.com>
To: Andrew Campling <andrew.campling@419.consulting>, Paul Adair <padair@infoblox.com>, Tommy Pauly <tpauly=40apple.com@dmarc.ietf.org>, Glenn Deen <Glenn_Deen@comcast.com>, ADD Mailing list <add@ietf.org>
Thread-Topic: [Add] Updated charter proposal for ADD
Thread-Index: AQHVyytkFcnOFtzCSEa0FUXLHiTY7qfrsxqAgAAsJYCAAVoooA==
Date: Thu, 16 Jan 2020 12:43:23 +0000
Message-ID: <AM0PR05MB5730B316E21D5C2FC7240B8C91360@AM0PR05MB5730.eurprd05.prod.outlook.com>
References: <236B0A34-8C7F-49D2-8075-5AF5AC35BDFB@apple.com> <0E6BAB56-3B54-4032-BD17-30770F242BB1@infoblox.com> <LO2P265MB05735CDA25DDA3A70364EC15C2370@LO2P265MB0573.GBRP265.PROD.OUTLOOK.COM>
In-Reply-To: <LO2P265MB05735CDA25DDA3A70364EC15C2370@LO2P265MB0573.GBRP265.PROD.OUTLOOK.COM>
Accept-Language: en-GB, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_0359f705-2ba0-454b-9cfc-6ce5bcaac040_Enabled=True; MSIP_Label_0359f705-2ba0-454b-9cfc-6ce5bcaac040_SiteId=68283f3b-8487-4c86-adb3-a5228f18b893; MSIP_Label_0359f705-2ba0-454b-9cfc-6ce5bcaac040_Owner=Kevin.Smith@vodafone.com; MSIP_Label_0359f705-2ba0-454b-9cfc-6ce5bcaac040_SetDate=2020-01-16T12:43:21.4149250Z; MSIP_Label_0359f705-2ba0-454b-9cfc-6ce5bcaac040_Name=C2 General; MSIP_Label_0359f705-2ba0-454b-9cfc-6ce5bcaac040_Application=Microsoft Azure Information Protection; MSIP_Label_0359f705-2ba0-454b-9cfc-6ce5bcaac040_Extended_MSFT_Method=Automatic; Sensitivity=C2 General
x-originating-ip: [47.73.248.223]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 251a3a79-c803-4d63-e9a0-08d79a81ac9a
x-ms-traffictypediagnostic: AM0PR05MB4308:
x-microsoft-antispam-prvs: <AM0PR05MB430872CD3015573E1935418991360@AM0PR05MB4308.eurprd05.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:9508;
x-forefront-prvs: 02843AA9E0
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(4636009)(39860400002)(396003)(376002)(366004)(136003)(346002)(199004)(189003)(55016002)(76116006)(15650500001)(66446008)(64756008)(66476007)(66946007)(86362001)(8676002)(8936002)(81166006)(81156014)(5660300002)(66556008)(7696005)(110136005)(186003)(26005)(66574012)(52536014)(6506007)(53546011)(316002)(478600001)(9686003)(2906002)(71200400001)(966005)(33656002); DIR:OUT; SFP:1101; SCL:1; SRVR:AM0PR05MB4308; H:AM0PR05MB5730.eurprd05.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1;
received-spf: None (protection.outlook.com: vodafone.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: xjkZDlaXxzT/RZKsItwaw9P2Dn/o3OGkK2fjZ6iDbhEnvpnZsNbelSo2hIl/DFf+NFuQW4jMJn67mxoXAzLMdD7LMvvEVzBsHd24L2UK3BgGLVXiW41houcqA5TdA5AXspcKwl70BdMyLIRsIElXxIiXPNQ4i4H6lAxgM4fuaXa7u2RZM6H8AyJJOWMHGz/LS7DS/JeC7aqwerVFHNmSCFjRll6Cb0dTueQKblmdxxFqEd7T7n+ktYbgX03gZpd79BnxvZlIJAEQMXqo2pPznTctG04j4a72FhTEzMoLwYOLN/7LvVw4sWFtAuNvrp7WGks3k6WarMjiP99OlBPfwC5PTg3Lr5e54LmR2KnVbUtBine9Npw1l8rhlwc2j8V5XXtrb0jTGZcdqEPTepNKsCzHKCqYBk+11F5nAMCBj1haonI45qyXGfGaECt068Gg2Y5TkXK80y5hsh5TNAqApP2ggkJhMPd3Cz0aW8mL8Bg=
x-ms-exchange-transport-forked: True
arc-seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=R2GC5fjzdS/hNw+pcv6lxKUM1596UB55cKJ69No/AMptnUfcb4DvWhtVqJZV1RtArAfQFWvdcSyqv4lucTb3eIhR+lelQh2gfA4MQr3bxrpxvtBUvdjEJwiOZfLcfvGrK8vBSCfSL+D4ajJa1cCh5a1UyjXJw8vGQZXn6SamJBpzhkPRVmN4lZ7EE4u01a9bKJzmlqxBq9vasJSVyqKr0gG1zsm8kYvBpkUwD4Cd7aoZeuRL7JsDX8nSmUq0h4UEMSzAe9H+/p5aSDZnRyH/YqEmTvrJRrMaIOCTpjN7y/ZTLBbxfR3soyOEwkqc83QcrcuKmz1I0w/F5zCLHha+ww==
arc-message-signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=aBn0FZxDzNsRfNKaFCxWRMxYoI58vkKelQo8FWRPhMc=; b=DDebYlrwhhNv3folvRSW1PdFdaaYBWf/JBPrzDd8tN6r7KTd9vD9twYciuJWMW6kaw/MpERA/B4WpvMU77hF82SwRSAv//I00nk6+nI5jDc9d3NARaIyHDMPHAQnvf3Jf4oRZWiON9+ug9VD4hAiPykeZuDjWsv/Rq10YjSIygyEypM1mFc4sBJc62fH82w+JZTbZ3PFE2pEIxOEzJ3HJeNraMDOokN+MxE8zw7q8m4tWcZQ9UxqASIKr7OybZlrCLRJf4IoOLCSiKWsBDCOAysSa0ejWJwE+Z5UeN6AwZ0JMvnk7NL2qNx0z7ym6AtkfUoF6pqqyZ+qENdWbcpoDw==
arc-authentication-results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=vodafone.com; dmarc=pass action=none header.from=vodafone.com; dkim=pass header.d=vodafone.com; arc=none
x-ms-exchange-crosstenant-network-message-id: 251a3a79-c803-4d63-e9a0-08d79a81ac9a
x-ms-exchange-crosstenant-originalarrivaltime: 16 Jan 2020 12:43:23.2017 (UTC)
x-ms-exchange-crosstenant-fromentityheader: Hosted
x-ms-exchange-crosstenant-id: 68283f3b-8487-4c86-adb3-a5228f18b893
x-ms-exchange-crosstenant-mailboxtype: HOSTED
x-ms-exchange-crosstenant-userprincipalname: vsX97A60x2KND4lbH3ah6BwVMVT1zEHMMosNUk/WKIjzhw3mF1PGrmQ9hQlkGQmYcRc+aFWwGZfzqNoDWMBleARJSMlEX8q3DezRHXQfnsg=
x-ms-exchange-transport-crosstenantheadersstamped: AM0PR05MB4308
Content-Type: multipart/alternative; boundary="_000_AM0PR05MB5730B316E21D5C2FC7240B8C91360AM0PR05MB5730eurp_"
MIME-Version: 1.0
X-OriginatorOrg: vodafone.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/add/67608hfdnhDjxXQx8flw4zaGZFc>
Subject: Re: [Add] Updated charter proposal for ADD
X-BeenThere: add@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Applications Doing DNS <add.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/add>, <mailto:add-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/add/>
List-Post: <mailto:add@ietf.org>
List-Help: <mailto:add-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/add>, <mailto:add-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 16 Jan 2020 12:43:37 -0000

+1 but with an amendment here:

    This working group will focus on discovery *, authentication* and selection of DNS resolvers
    by DNS clients in a variety of networking environments,

This is to help mitigate the scenario of a rogue resolver in a local network.

All best,
Kevin




C2 General
From: Add <add-bounces@ietf.org> On Behalf Of Andrew Campling
Sent: 15 January 2020 15:45
To: Paul Adair <padair@infoblox.com>; Tommy Pauly <tpauly=40apple.com@dmarc.ietf.org>; Glenn Deen <Glenn_Deen@comcast.com>; ADD Mailing list <add@ietf.org>
Subject: Re: [Add] Updated charter proposal for ADD

+1

Andrew

-----Original Message-----
From: Paul Adair <padair@infoblox.com<mailto:padair@infoblox.com>>
Sent: 15 January 2020 13:07
To: Tommy Pauly <tpauly=40apple.com@dmarc.ietf.org<mailto:tpauly=40apple.com@dmarc.ietf.org>>; ADD Mailing list <add@ietf.org<mailto:add@ietf.org>>
Subject: Re: [Add] Updated charter proposal for ADD

I support the charter as written.

Paul Adair
Infoblox

On 1/14/20, 4:38 PM, "Add on behalf of Tommy Pauly" <add-bounces@ietf.org on behalf of tpauly=40apple.com@dmarc.ietf.org<mailto:add-bounces@ietf.org%20on%20behalf%20of%20tpauly=40apple.com@dmarc.ietf.org>> wrote:

    Hi all,

    I wanted to share an updated proposal for an ADD charter, based on the feedback and discussion on the list in the past several weeks.

    This is based on the original proposal that was sent in December, taking into account various comments and suggestions. Glenn Deen, Andrew Campling, and I worked on this revision together and came to consensus on its contents.

    Thoughts and comments are welcome as always!

    (Note that the proposed name of the group was not changed, and is entirely open to bikeshedding. Naming is hard!)

    Best,
    Tommy



    Adaptive DNS Discovery (ADD)
    ====================================
    Proposed Working Group Charter

    Sending DNS messages over encrypted transports, as defined in DNS over
    TLS (DoT) [RFC 7858] and DNS over HTTPS (DoH) [RFC 8484], provides
    benefits to the security and privacy of DNS data. Clients, such as
    applications and host operating systems, have started adopting these
    protocols to provide these user benefits.

    This working group will focus on discovery and selection of DNS resolvers
    by DNS clients in a variety of networking environments, including public
    networks, private networks, and VPNs; supporting both encrypted and
    unencrypted resolvers.

    Clients adopting encrypted DNS protocols need to determine which DNS
    servers support encrypted transports, and which server to use for specific
    queries if multiple servers are available. These decisions can vary based
    on the network environment, and also based on the content and purpose of
    the client queries.

    Network operators that start offering DNS encryption on their servers also
    need a way to indicate this support to clients. Communicating information
    about resolver configuration and behavior allows clients to make more
    informed decisions about which DNS servers to use. For example, a resolver
    may be able to resolve private or local names as a split DNS server.

    The Adaptive DNS Discovery (ADD) working group will work on the following
    deliverables:

    - define a mechanism that allows clients to discover DNS resolvers,
    including encrypted DNS servers, that are available to the client
    either on the public Internet or on private or local networks;

    - define a mechanism that allows communication of DNS resolver
    information to clients for use in selection decisions;

    - develop an informational document that describes how client
    applications and systems can manage selection of DNS resolvers
    in various network environments and use cases.

    Any mechanisms that specify interactions between clients and
    servers must provide the security properties expected of IETF
    protocols, e.g., confidentiality protection, integrity protection,
    and authentication with strong work factor.

    This working group will coordinate with dnsop, doh, and dprive for any
    changes required in DNS protocols. It will also work with capport to
    ensure that solutions are applicable to captive networks.

    --
    Add mailing list
    Add@ietf.org<mailto:Add@ietf.org>
    https://urldefense.com/v3/__https://www.ietf.org/mailman/listinfo/add__;!!JYsgTRAg6ZQ!YAYWpqIz-5mnVKFP1uomaHnZqaaPeM7jg_t3b2JEb1RGKILDMtltv1eD68VDh3Y$<https://urldefense.com/v3/__https:/www.ietf.org/mailman/listinfo/add__;!!JYsgTRAg6ZQ!YAYWpqIz-5mnVKFP1uomaHnZqaaPeM7jg_t3b2JEb1RGKILDMtltv1eD68VDh3Y$>