Re: [Add] draft-ietf-add-resolver-info: next steps after IESG evaluation

mohamed.boucadair@orange.com Fri, 05 April 2024 14:48 UTC

Return-Path: <mohamed.boucadair@orange.com>
X-Original-To: add@ietfa.amsl.com
Delivered-To: add@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3E283C14F726 for <add@ietfa.amsl.com>; Fri, 5 Apr 2024 07:48:29 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.094
X-Spam-Level:
X-Spam-Status: No, score=-7.094 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H4=0.001, RCVD_IN_MSPIKE_WL=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, UNPARSEABLE_RELAY=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=orange.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id SIR0-Qai9Q_a for <add@ietfa.amsl.com>; Fri, 5 Apr 2024 07:48:25 -0700 (PDT)
Received: from smtp-out.orange.com (smtp-out.orange.com [80.12.210.121]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 49897C151551 for <add@ietf.org>; Fri, 5 Apr 2024 07:48:17 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=orange.com; i=@orange.com; q=dns/txt; s=orange002; t=1712328497; x=1743864497; h=to:cc:subject:date:message-id:references:in-reply-to: mime-version:from; bh=vPEFiy8uBXrdioJBp1bi+N2pAPqQZqaVvhi05oR/XIw=; b=LmHkt64t71Io8vz3UjIgxQMCdtOux6mp7JJsRIHOtRaFETs48FDctH4C Ab+kX2ytQYnLKqw1wXNacl13mdjV/C+YNEZrESwIIylnjJcA2Db2DE7AS GYCM9HdqJ34Xm5rk+GTBFQ1muOKNFRrXBmi2G4KeBH3Q//AYlzE25525N xvoMBOYsEVyoaRFEkrajkgbII4apSbGZpAaDR7MSkIRGbAiu4hfDzYABB GNosZwJqXj8zBL9a4igg0MDFv7kDX7C/MNZ3ncVT6Sg0Mo4YsnDTJj5hM 5oPcPfjqc9ZN7IwGGYCL6JxnQvR+WS8PCf5QUhfhgToXhNnOc3PKc40rD w==;
Received: from unknown (HELO opfedv1rlp0b.nor.fr.ftgroup) ([x.x.x.x]) by smtp-out.orange.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 05 Apr 2024 16:48:15 +0200
Received: from unknown (HELO opzinddimail3.si.francetelecom.fr) ([x.x.x.x]) by opfedv1rlp0b.nor.fr.ftgroup with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 05 Apr 2024 16:48:15 +0200
Received: from opzinddimail3.si.francetelecom.fr (unknown [127.0.0.1]) by DDEI (Postfix) with ESMTP id CD9695202F0C for <add@ietf.org>; Fri, 5 Apr 2024 16:48:14 +0200 (CEST)
Received: from opzinddimail3.si.francetelecom.fr (unknown [127.0.0.1]) by DDEI (Postfix) with ESMTP id C1C275202E51 for <add@ietf.org>; Fri, 5 Apr 2024 16:48:14 +0200 (CEST)
Received: from smtp-out365.orange.com (unknown [x.x.x.x]) by opzinddimail3.si.francetelecom.fr (Postfix) with ESMTPS for <add@ietf.org>; Fri, 5 Apr 2024 16:48:14 +0200 (CEST)
Received: from mail-vi1eur04lp2050.outbound.protection.outlook.com (HELO EUR04-VI1-obe.outbound.protection.outlook.com) ([104.47.14.50]) by smtp-out365.orange.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 05 Apr 2024 16:48:14 +0200
Received: from DU2PR02MB10160.eurprd02.prod.outlook.com (2603:10a6:10:49b::6) by PAVPR02MB9378.eurprd02.prod.outlook.com (2603:10a6:102:309::9) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7409.46; Fri, 5 Apr 2024 14:48:12 +0000
Received: from DU2PR02MB10160.eurprd02.prod.outlook.com ([fe80::18a0:3679:a134:1d02]) by DU2PR02MB10160.eurprd02.prod.outlook.com ([fe80::18a0:3679:a134:1d02%6]) with mapi id 15.20.7409.042; Fri, 5 Apr 2024 14:48:12 +0000
From: mohamed.boucadair@orange.com
X-TM-AS-ERS: 10.106.160.161-127.5.254.253
X-TM-AS-SMTP: 1.0 c210cC1vdXQzNjUub3JhbmdlLmNvbQ== bW9oYW1lZC5ib3VjYWRhaXJAb 3JhbmdlLmNvbQ==
X-DDEI-TLS-USAGE: Used
Authentication-Results: smtp-out365.orange.com; dkim=none (message not signed) header.i=none; spf=Fail smtp.mailfrom=mohamed.boucadair@orange.com; spf=Pass smtp.helo=postmaster@EUR04-VI1-obe.outbound.protection.outlook.com
Received-SPF: Fail (smtp-in365b.orange.com: domain of mohamed.boucadair@orange.com does not designate 104.47.14.50 as permitted sender) identity=mailfrom; client-ip=104.47.14.50; receiver=smtp-in365b.orange.com; envelope-from="mohamed.boucadair@orange.com"; x-sender="mohamed.boucadair@orange.com"; x-conformance=spf_only; x-record-type="v=spf1"; x-record-text="v=spf1 include:spfa.orange.com include:spfb.orange.com include:spfc.orange.com include:spfd.orange.com include:spfe.orange.com include:spff.orange.com include:spf6a.orange.com include:spffed-ip.orange.com include:spffed-mm.orange.com -all"
Received-SPF: Pass (smtp-in365b.orange.com: domain of postmaster@EUR04-VI1-obe.outbound.protection.outlook.com designates 104.47.14.50 as permitted sender) identity=helo; client-ip=104.47.14.50; receiver=smtp-in365b.orange.com; envelope-from="mohamed.boucadair@orange.com"; x-sender="postmaster@EUR04-VI1-obe.outbound.protection.outlook.com"; x-conformance=spf_only; x-record-type="v=spf1"; x-record-text="v=spf1 ip4:40.92.0.0/15 ip4:40.107.0.0/16 ip4:52.100.0.0/14 ip4:104.47.0.0/17 ip6:2a01:111:f400::/48 ip6:2a01:111:f403::/49 ip6:2a01:111:f403:8000::/51 ip6:2a01:111:f403:c000::/51 ip6:2a01:111:f403:f000::/52 -all"
IronPort-Data: A9a23:p1Ml4q7SsMiB59X5gb+1IwxRtP/AchMFZxGqfqrLsTDasY5as4F+v mseC2mAMvuCMTanfdslOt/j/E0B7cLXn4M1QQJurCg3Eysa+MHIO4+Ufxz6V8+wwmwvb67FA +E2MISowBUcFyeEzvuVGuG96yM6jMlkf5KkYMbcICd9WAR4fykojBNnioYRj5Vh6TSDK1vlV eja/YuHZzdJ5xYuajhIs/7b9Us21BjPkGhwUmIWNKkjUGD2xyF94KI3fcmZM3b+S49IKe+2L 86rIGaRpz6xE78FU7tJo56jGqE4aue60Tum0xK6b5Ofbi1q/UTe5EqZ2M00Mi+7gx3R9zx4J U4kWZaYEW/FNYWU8AgRvoUx/yxWZcV7FLH7zXeXvPHQxg7KcVTWwfxRUEYSbZJHxeFRHjQbn RAYAGhlghGrqt+MmO7+dMg1w8MpIY/sIZ8VvWxmwXfBF/E6TJvfQqLMo9hFwDM3gcMIFvHbD yYbQWM3MFKcPFsWZhFKUPrSn8/w7pX7WzhfqFuQqKZx6W/OxwV92bn3GN3Pc9qFSINemUPwS mfupD2pU0pFaIP3JTyt1k7ygPbdlhrHUaEML6O00+VgilKZ2TlGYPERfQDg+6Xm4qKkYPpSN V0S8Skj+PRq/02wRd67VBq9iHKBtwQXHdtdD+N87xuCooLd7wqxB2UYQHhGctNOnNc/WDgC0 FiJls/yQzdm2JWKQGiH+7G8ri63MDIUa2kPeUcsTwQey9v+poArgwiJSNt/eIaylNz4MS3qy jaRqTUiivMSi8IWzLmh/F3c6xq2qpThRQMv+kPQRG3N0+9iTIusZojt91mC4OtadNqdVgPZ4 SBCnNWC5ucTC53LjDaKXOgGALCu4bCCLSHYhllsWZIm8lxB5kJPY6hd3XJ3Z0trHfwGcAC1Z 2uDplxu47lMaS7CgbBMX6q9DMEjzK7FHNvjV+zJYtcmXnSXXF/WlM2JTR7Bt10BgHQRfbcD1 YCzWPrEMJr3IaFuzT7zWeZE3KIxnnw63TmLGMi9yAm7272DYnLTUa0CLFaFcuE+6uWDvRnR9 NFcccCNzn2zsdESgAGGqub/znhTdhDX4KwaTeQJK4ZvxSI4RQkc5wf5m+9JRmCct/09eh301 n+8QFRE71H0mGfKLw6HAlg6N+q1B8si8SxmZndxVbpN55TFSdf3hEv4X8pvFYTLCMQ/lKMkJ xX4U5neXagUGmyXk9jjRcCn89A/KHxHej5izwL+O2JjIPaMtiTM+9T+eRDo+jVGBS2traMDT 06Ih2vmrW44b106Vq7+Marxp3vo5CR1sLwoAyPgfIIJEG2yq9gCFsAEpqVnSy36AU6cl2TyO sf/KUtwmNQhVKdurImZ1Pnf8Nn5ewa8d2IDd1TmAX+NHXGy1gKeLUVoCY5koRi1uKLIFKSei SF94szGaKFConcT9o12HvBs0L404Mbpq/lC1AN4EX7XblOtTLR9Pn2B2soJvapIrlOckRXjQ VqBo7G2Jp3QUP4J0nZJTObmUghH/fYOkz/d4LI+J0CSCOpf4u+cSUsLV/WToHA1EYaZ6L8Y/ No=
IronPort-HdrOrdr: A9a23:8UKan61/BsQ7PTfy8kL5BAqjBS1yeYIsimQD101hICG9Lfb0qy n+pp4mPEHP4wr5AEtQ4expOMG7IU80hqQFmrX5XI3SKjUO11HYSL2KgbGN/9SkIVyGygc/79 YoT0EdMqyWMbESt6+TjGaF+pQbsb+6GcuT9ITjJgJWPGRXgtZbnmVE42igc3FedU1jP94UBZ Cc7s1Iq36LYnIMdPm2AXEDQqzqu8DLvIiOW29MOzcXrC21yR+44r/zFBaVmj0EVSlU/Lsk+W /Z1yTk+6SYte2hwBO07R6Y030Woqqt9jJwPr3CtiEnEESjtu9uXvUhZ1S2hkF4nAho0idrrD CDmWZiAy050QKqQoj8m2qR5+Cn6kdn15fvpGXo/UfLsIj3Qik3BNFGgp8cehzF61A4tNU5y6 5T2XmF3qAneC8osR6NlOQgbSsa5HacsD4ni6oennZfWYwRZPtYqpEe5lpcFNMFEDjh4I4qHe FyBIWEjcwmBm+yfjTcpC1i0dasVnM8ElOPRVUDoNWc13xTkGpix0UVycQDljML9Y47SZND++ PYW54Y4I1mX4sTd+ZwFe0BScy4BijERg/NKnubJRD9GKQOKxv22u7KCXUOlZCXkcYzveQPcb z6IS1liVI=
X-Talos-CUID: 9a23:K5f1mG41g/ro0DWflNss+XNXE4MpcFLnzn7vf0icWXk2d7qzVgrF
X-Talos-MUID: 9a23:TJ8W3AsbZ3lAiuFt882noA08Mt566J2SAWMTqosKntKOPyN6JGLI
X-IronPort-AV: E=Sophos;i="6.07,181,1708383600"; d="scan'208,217";a="31893747"
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=WlJ/Svt60JDHgArcytS80zOLIEYC8l8+83NL9YMx1oClqv8Fp8PohppffOzSeKlIHNTA4AvLIhrhyY8UZIzfGe2ZN2ZPkZCwDLHaavar1Dhbo+wGS0UEllQ6JvOpSNv0dN6GsuXSENnN1qDpFHc4GkhRQ0SPuaJJZvn8lMTP7sy3XPOr2ujwFX1HwXDiB7v891yCbF1W5FVKMLanQZwtjR8WVXEnfG7UsN8q5U42d7H1K8RKeJPSpHa6LLFqb469nTjpSBXocaYzQDxq9xFJjxtu/9Jn+Li6lh6DAwlVKv/z3N+Iy1qPAlDYB4iH8+HPBoKu1pHkA8CJYKjDfB/Cqg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=SJFZt7KKt6YYuJ/Lb5KShQzNw6Wkp0HA//0yXrlxzjs=; b=eCar+qaDb/iY4ybkOXTpVmzXz3WMESWXXBhLOqnJ64uFSaQK3INUKR6DTiAVF/ieAyhfAKpeclnqN88TPkexnOADUH/RHePr4ZGnD8zz92XReTgUPubHFnNcR5lEP47PWPZE8PR1JFv56mcbXYpORcZ5KX1OD+UxRGoK/2ghs0PxJUzkkkJ4DokMpX1C5lsXUWRIxrHwTy36dlf49Ll8nJeoPAgrQfig34bI3vGeFqR/0LuVuVNVT2e7mICn/jpS0OHzHSGBCmj9uzGhZvPhyKN3ee2+9cssjiHnwRl/wDWTC7RNsAO+iA4rpz4BtQHVpDSUn+GkxI+AhNiYzkZa+A==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=orange.com; dmarc=pass action=none header.from=orange.com; dkim=pass header.d=orange.com; arc=none
To: "Eric Vyncke (evyncke)" <evyncke=40cisco.com@dmarc.ietf.org>, "add@ietf.org" <add@ietf.org>
CC: Paul Wouters <paul@nohats.ca>, Warren Kumari <warren@kumari.net>, John Scudder <jgs@juniper.net>, "orie@transmute.industries" <orie@transmute.industries>, Roman Danyliw <rdd@cert.org>
Thread-Topic: draft-ietf-add-resolver-info: next steps after IESG evaluation
Thread-Index: AQHah0hJt/CM/cdKT0aO9e8mjYH6BbFZqffA
Date: Fri, 05 Apr 2024 14:48:12 +0000
Message-ID: <DU2PR02MB101609C49A68F1CB3C57A68BC88032@DU2PR02MB10160.eurprd02.prod.outlook.com>
References: <PH0PR11MB4966A3629503F08647DD10DAA9032@PH0PR11MB4966.namprd11.prod.outlook.com>
In-Reply-To: <PH0PR11MB4966A3629503F08647DD10DAA9032@PH0PR11MB4966.namprd11.prod.outlook.com>
Accept-Language: fr-FR, en-US
Content-Language: fr-FR
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ActionId=c4c8688d-feb9-4add-acd3-7fd45fa2a205; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ContentBits=0; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Enabled=true; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Method=Privileged; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Name=unrestricted_parent.2; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SetDate=2024-04-05T14:47:55Z; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SiteId=90c7a20a-f34b-40bf-bc48-b9253b6f5d20; MSIP_Label_f47c794b-e3ab-43f0-9e0f-29fc3e503192_ContentBits=0; MSIP_Label_f47c794b-e3ab-43f0-9e0f-29fc3e503192_Enabled=true; MSIP_Label_f47c794b-e3ab-43f0-9e0f-29fc3e503192_Method=Standard;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: DU2PR02MB10160:EE_|PAVPR02MB9378:EE_
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: jsjFmz0vcXB21R9rnZTkB7X5LKpygVYQ13zr0IqiRDsZojnvfR4uSmr53UA9TOKkGg1mTjpc/WH+v5hUWaNieCGTEBTs1pihkpGi7JA2Xh9aAIBGcRpmOc/m4yxIAKVN/wYPUExzqetf3YavVIkpihkWX2tBW3c4fz0MNUOTY+VwG0Euye83I/tS/W/Y3Et04iR7Cs6yyxTg9WZLxAjM5bma7yqxYmb0MBWn9cQuHJ8NmO+QHtr6eXujnu8s9dv2+LHIrsNn6ZS5E76qHos0UMH8BWlimulIJZXBVeq0zRU8BDkZC81NMkQpS+c6LXdjd3v5E8MkV/j7g1ju32cekftV2WQ+k5sYvbUSNhWHXxLthMST1i0tdIib6ObtR6YbX/0xPRreR3p5eK3nPwW2/A4ji3Q6Kxsee83dfLJhO7rFNQiUC/4YVhmTs1rJ8iPTyEHyWUrqigbgOvMgJly5jcufpaTY0VRCGjW3qFYLVqE3EgmhvjpNHbUaC7JiP5BLBUWSLHG56vxQ/YfhoiN0wDjTu4Kred17qgwWv95T3AwTue1CPIwpFhC9yY+BTk9WgkeNOJtWO9Ibsde6IOBXlw36J2yHYy5ZErf20155IcA=
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DU2PR02MB10160.eurprd02.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230031)(366007)(1800799015)(376005); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_DU2PR02MB101609C49A68F1CB3C57A68BC88032DU2PR02MB10160eu_"
MIME-Version: 1.0
X-OriginatorOrg: orange.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DU2PR02MB10160.eurprd02.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: a7203742-6552-473c-7064-08dc557f6ae8
X-MS-Exchange-CrossTenant-originalarrivaltime: 05 Apr 2024 14:48:12.2533 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 90c7a20a-f34b-40bf-bc48-b9253b6f5d20
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: hVdFzwzACKGmdpQiGTJNKpgqp8NY6l5cYPhbq3wsP1R/CVI6oOG/4getWbPgjE4IzLUII8W/JO9o9oK3RInug3ejHH0pu7dhWRPW1KA5qTE=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: PAVPR02MB9378
X-TM-AS-ERS: 10.106.160.161-127.5.254.253
X-TM-AS-SMTP: 1.0 c210cC1vdXQzNjUub3JhbmdlLmNvbQ== bW9oYW1lZC5ib3VjYWRhaXJAb 3JhbmdlLmNvbQ==
X-TMASE-Version: DDEI-5.1-9.0.1002-28300.000
X-TMASE-Result: 10--34.784500-10.000000
X-TMASE-MatchedRID: DAISuvzHIxM7iuZ/mdYYtkyjzpF8oTL0F/BD5ICudJDzlZH9z0qVwS2+ lyx46iL0UriXxFmUkHxv+ggm5QAi4QvC14P5CfJQyJyq8H6JxQs46nnHFTLuhixJikbNmBVYVkM lK091+rlwH4sGDIqhGSxuoHNXEp2cBFF0/8xJ1RMtferJ/d7Ab6AiHx6Ltn6xwZGcXkaUPkSR9Z Oncf1cD/nSQjwFFkFK9DGkDtq4vAyyQlwM8dYPoFSOymiJfTYXK1Mf3t2yT8rgr0WZ6u+ypWm4d QWu3+fw7Hir4k0u0XncgUVP3Cp+vWBKRtg9pHEaBeMWvOgcJKQoxCDWnyhHjmJKRLd7/ZSD0NkM j1aKN9/BzRShS51oc0hwlOfYeSqxonHncq+X0NCOVdQAiMmbZ6QxA9genngPLbdME4jVQo940Ze DdxmzD0VJQsZtdu5Eynaq9UJcJkE+yaZy3p+bIsrI0rN+Dp7WXzwoVYXbtz69E5YglZol6BKX/I XlLkgmaasm9iJN8MLG9W0D68BZzDfiRywjeXbj1+OTFqKF59lG14mXSgbaDJqgQB3F0Z9ZuZo1Z Ad/ZBoXsn05+3ENErJpcu2XCdkc45oDENe4eeugvxJeels/vhjRfkHwOX+LO2tkv7yhGRji9uQG gBa4IQ6IZXCOSM5Q+LfLuKfgdOASrxWnE1VUiUtYyuL5CqaxLAFTQlxOSHGAwG2maXQMIEmlX2s cVfePszCdMqCRuw7BtFDYGmaWKhrL4FDGAJ+F19XEQ+nuD+SxSH46Ro6Gl8J++jdSAUUkmkn+IZ 5EwVA/sDqabNSyQIDcpVWyPxAMK39Vnjxo/9CbKItl61J/ySedSoBMABnZuq0cduu5vbaVg+Qww Kj2nR0XCFxtG+ioa9+JVKonO7cUWGUIShvtrek/y0w7JiZo
X-TMASE-SNAP-Result: 1.821001.0001-0-1-22:0,33:0,34:0-0
X-TMASE-INERTIA: 0-0;;;;
X-TMASE-XGENCLOUD: 1742ee61-1fb3-47e8-a34b-eb788d0d725b-0-0-200-0
Archived-At: <https://mailarchive.ietf.org/arch/msg/add/BZLE2i6h837Jaqg5x1ItwEw1jdw>
Subject: Re: [Add] draft-ietf-add-resolver-info: next steps after IESG evaluation
X-BeenThere: add@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Applications Doing DNS <add.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/add>, <mailto:add-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/add/>
List-Post: <mailto:add@ietf.org>
List-Help: <mailto:add-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/add>, <mailto:add-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 05 Apr 2024 14:48:29 -0000

Hi Éric, all,

Thank you for the summary and next steps. Looks like a plan.

An attempt to address the first three point is available at:

https://author-tools.ietf.org/api/iddiff?doc_1=draft-ietf-add-resolver-info&url_2=https://boucadair.github.io/add-resolver-information/draft-ietf-add-resolver-info.txt

We would appreciate if Paul/Warren/John/Orie/Roman can review and share feedback. We can adjust as appropriate.

For (4)"As the infourl can be hosted in a different server (or even organization) than the DNS server, how can the validity be ensured ? (e.g., there could be some discrepancies after a couple of years)"

We used to have the following in older versions of the draft,

      The
      client MUST validate that both the encrypted DNS server and the
      resolver information server are owned and managed by the same
      entity by establishing a TLS connection to the domain name in the
      URL and checking if the subjectAltName entry in the server
      certificate includes the name of the encrypted DNS server.  If
      this match fails, the client MUST ignore the resolver information.
      The URL should be treated only as diagnostic information for IT
      staff.

But was removed because the url is only for IT staff but more importantly because we received this fair comment (no need to over specify):

==
That looks like a lot of work required of the client for something it
itself is not interested in and a human looks at for diagnostic
purposes. Because of section 6 we know the infourl is authentic and
wasn't changed during transport. We kinda trust the resolver but we
don't trust the web server that the resolver tells us to trust. That
seems odd. It might also be annoying to arrange shared certificates
between a resolver and a web server.

As someone who might implement this in a client I'd rather not reach out
to a web server to check it's TLS certificate just so that I can show
additional information to the user.
==

Cheers,
Med

De : Add <add-bounces@ietf.org> De la part de Eric Vyncke (evyncke)
Envoyé : vendredi 5 avril 2024 13:11
À : add@ietf.org
Cc : Paul Wouters <paul@nohats.ca>; Warren Kumari <warren@kumari.net>; John Scudder <jgs@juniper.net>; orie@transmute.industries; Roman Danyliw <rdd@cert.org>
Objet : [Add] draft-ietf-add-resolver-info: next steps after IESG evaluation

You may be aware of the new status 'revised I-D needed' for draft-ietf-add-resolver-info after the IESG telechat of 4th of April 2024:
https://datatracker.ietf.org/doc/draft-ietf-add-resolver-info/ballot/

I.e., more work to do by the authors and the ADD WG:


  1.  Adding context for the I-D, i.e., describing one or more use cases as some IESG members were unable to understand how this can be used (notably by OS and/or browsers/apps)
  2.  Can a human end-user make use of this information ? Again lack of context/use cases
  3.  This is also linked on whether this I-D is providing a client policy (or just hints). The former is out of scope of the ADD charter, but use case(s) could help to clear this issue.
  4.  As the infourl can be hosted in a different server (or even organization) than the DNS server, how can the validity be ensured ? (e.g., there could be some discrepancies after a couple of years)

It was proposed to either have a real ADD WG interim with the DISCUSS holders and the WG (and possibly other topics) or simply a *public* Webex (happy to organize it) with DISCUSS holders, authors, chairs (plus any IETF participants of course). My own take is that the I-D can progress over email during April and then have this interim/Webex mid-May for a final check.

All in all, with the number of requested changes, the I-D will most probably undergo another IESG telechat (and possibly another IETF Last Call)

The problem is solvable but will require more work.

Regards

-éric
____________________________________________________________________________________________________________
Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc
pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler
a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration,
Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci.

This message and its attachments may contain confidential or privileged information that may be protected by law;
they should not be distributed, used or copied without authorisation.
If you have received this email in error, please notify the sender and delete this message and its attachments.
As emails may be altered, Orange is not liable for messages that have been modified, changed or falsified.
Thank you.