Re: [Add] I-D Action: draft-ietf-add-dnr-04.txt

Ben Schwartz <bemasc@google.com> Mon, 13 December 2021 15:12 UTC

Return-Path: <bemasc@google.com>
X-Original-To: add@ietfa.amsl.com
Delivered-To: add@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B68EB3A03ED for <add@ietfa.amsl.com>; Mon, 13 Dec 2021 07:12:41 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -17.599
X-Spam-Level:
X-Spam-Status: No, score=-17.599 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_MED=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, ENV_AND_HDR_SPF_MATCH=-0.5, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, USER_IN_DEF_DKIM_WL=-7.5, USER_IN_DEF_SPF_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=google.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 6IKLTFcPJcfG for <add@ietfa.amsl.com>; Mon, 13 Dec 2021 07:12:36 -0800 (PST)
Received: from mail-vk1-xa30.google.com (mail-vk1-xa30.google.com [IPv6:2607:f8b0:4864:20::a30]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 710EF3A03F8 for <add@ietf.org>; Mon, 13 Dec 2021 07:12:36 -0800 (PST)
Received: by mail-vk1-xa30.google.com with SMTP id 70so10591391vkx.7 for <add@ietf.org>; Mon, 13 Dec 2021 07:12:36 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20210112; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=BCoYv5aQijnzdpbpFxinprSH4QhPLbXJmiGLcQGYDcQ=; b=I8l4GJfTS1Y1P8Z2ruRLSMnrgAICYgEJtwb2EbZ49D+ia5b4GNiJCFnM9pNbMh1FJr Cxhi+Yjwe034WhiJDytCX0FCdpDtCYIBNW4jvN7GqsUPMWvDXdmKSfaeZzf6NvkI0kgD HlgEoF0+fhpVH5JZVsv0uDpp2xSjm47yyoHa+FLfXru0TApzB/X/BSdX1Ep2E1/Y19C5 hILdbxoRuic5R0af7iPZctG0ALrPO/Kq4MnNaNGIRRaNGbiCMqQdGqoGBqBmdhmXGIE9 OjXtc4j2p9V/p2gp9+DePN7Samrvz5JEUALZ5rSfoaqzoFQkK/aalAQWw4SLESHy1hJj mScA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=BCoYv5aQijnzdpbpFxinprSH4QhPLbXJmiGLcQGYDcQ=; b=s+PSpWkgYyXwO81lbtR281OD925+eeUO4ypMntdlNyzBSKKkBpKwPa8q5JGhJ2pS5o TasfxTTWKTMcICecuMpd9NHMYW5HNAhBNvcaZai1HjSe4SZalKFBYAObQpzxbC++vuQC QCkjmHTd4g/eUIMr35jh1zLpXRiGlLHa1LcYEUtSVuEdlDLh+N6+9KgC7jvatlCj+FkG 0n0qIDb5z7rtyOIN7RE1e+Yl0m9vBk08oazfOPi5KThmV3a6CRDQEiTM2cph+Hs714hd amoLk8r9uhVs/a1tKR0GZFPLIdJkZiNrcrZVufcnrjDv6iogkiNqjW8LmoRiT0ix3vYY sECA==
X-Gm-Message-State: AOAM533JcjMNKMGIfWUw5xX23x0zrtMJoTJtkbwEyiK8MXyiLDhZX0O1 Hr4EbzzlFkMCqcsgiY223zFi3DLd46iaaO1/KJiTS5NKY78=
X-Google-Smtp-Source: ABdhPJwpcriVhwmlLQ3Yyt6ECQJDFMmAu8I9IYQMkfyPGhQKQOZW1LJEsWbjpHDu/XX9msyJpyqLSjCekb7NLOOQ/Oc=
X-Received: by 2002:a05:6122:99b:: with SMTP id g27mr32548126vkd.14.1639408354248; Mon, 13 Dec 2021 07:12:34 -0800 (PST)
MIME-Version: 1.0
References: <163903270649.6465.5137287913333383312@ietfa.amsl.com> <18246_1639033141_61B1A935_18246_427_1_787AE7BB302AE849A7480A190F8B933035461678@OPEXCAUBMA2.corporate.adroot.infra.ftgroup> <CAHbrMsAkj28Bsm=c+VDQo71-gNZgC7EEm+Jr7Ch1F2xm9e9zcQ@mail.gmail.com> <1923_1639120108_61B2FCEC_1923_35_1_787AE7BB302AE849A7480A190F8B933035462301@OPEXCAUBMA2.corporate.adroot.infra.ftgroup> <22653_1639402453_61B74BD5_22653_443_1_787AE7BB302AE849A7480A190F8B9330354637AC@OPEXCAUBMA2.corporate.adroot.infra.ftgroup>
In-Reply-To: <22653_1639402453_61B74BD5_22653_443_1_787AE7BB302AE849A7480A190F8B9330354637AC@OPEXCAUBMA2.corporate.adroot.infra.ftgroup>
From: Ben Schwartz <bemasc@google.com>
Date: Mon, 13 Dec 2021 10:12:23 -0500
Message-ID: <CAHbrMsCftA8hViaUhw8-Bwa-me8phca7469KTibpax9+M53XZw@mail.gmail.com>
To: mohamed.boucadair@orange.com
Cc: "add@ietf.org" <add@ietf.org>
Content-Type: multipart/alternative; boundary="0000000000009961f405d30880f1"
Archived-At: <https://mailarchive.ietf.org/arch/msg/add/JPnLQT1vVDtuQy4KXl4pY7ssI4c>
Subject: Re: [Add] I-D Action: draft-ietf-add-dnr-04.txt
X-BeenThere: add@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Applications Doing DNS <add.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/add>, <mailto:add-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/add/>
List-Post: <mailto:add@ietf.org>
List-Help: <mailto:add-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/add>, <mailto:add-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 13 Dec 2021 15:12:42 -0000

This is not what I meant.  I meant that you can now get rid of the "ADN
length" field, because the authentication domain name is self-delimiting.
This makes the remainder of the payload (after the IPs) syntactically
identical to SVCB RDATA.

If we keep the ADN length field, then I don't think this reordering is an
improvement.

On Mon, Dec 13, 2021 at 8:34 AM <mohamed.boucadair@orange.com> wrote:

> Hi all,
>
>
>
> The format was updated to list the IP addresses first:
> https://www.ietf.org/rfcdiff?url1=draft-ietf-add-dnr-04&url2=draft-ietf-add-dnr-05
>
>
>
> Cheers,
>
> Med
>
>
>
> *De :* Add <add-bounces@ietf.org> *De la part de*
> mohamed.boucadair@orange.com
> *Envoyé :* vendredi 10 décembre 2021 08:08
> *À :* Ben Schwartz <bemasc@google.com>
> *Cc :* add@ietf.org
> *Objet :* Re: [Add] I-D Action: draft-ietf-add-dnr-04.txt
>
>
>
> Hi Ben,
>
>
>
> No problem to list the IP addresses first as both are variable-length.
>
>
>
> For the length vs. count, this is something we considered in the past. I
> have reported at that time that we depend on the dhc recommendations. As a
> reminder, the discussion we had with Bernie (dhc wg Chair) triggered
> https://mailarchive.ietf.org/arch/msg/dhcwg/gZ_EbiPVOt-3tARDeQHYLHbh8R8/.
>
>
>
> Cheers,
>
> Med
>
>
>
> *De :* Ben Schwartz <bemasc@google.com>
> *Envoyé :* jeudi 9 décembre 2021 22:37
> *À :* BOUCADAIR Mohamed INNOV/NET <mohamed.boucadair@orange.com>
> *Cc :* add@ietf.org
> *Objet :* Re: [Add] I-D Action: draft-ietf-add-dnr-04.txt
>
>
>
> Now that the SvcPriority is included in the payload, I would suggest
> moving the IP addresses to the beginning of the payload.  That would allow
> the remainder to be syntactically identical to SVCB RDATA, so it can be
> synthesized and parsed using the exact same code used for SVCB records.
> (It would also save one byte.)
>
>
>
> As I mentioned previously I would also prefer to provide the _count_ of IP
> addresses, rather than the _length_ of the IP address field.  This avoids
> the potential for memory safety vulnerabilities when Addr Length is
> impossible (e.g. 13) and saves one byte for IPv6.
>
>
>
> On Thu, Dec 9, 2021 at 1:59 AM <mohamed.boucadair@orange.com> wrote:
>
> Hi all,
>
> This version fixes an issue about DHCP option ordering: we used to rely
> upon the options appearance but this is against RFC7227.
>
> We also made some editorial changes to clean the reference to the
> deployment I-D.
>
> Looking forward seeing the I-D in WGLC.
>
> Cheers,
> Med
>
> > -----Message d'origine-----
> > De : Add <add-bounces@ietf.org> De la part de internet-drafts@ietf.org
> > Envoyé : jeudi 9 décembre 2021 07:52
> > À : i-d-announce@ietf.org
> > Cc : add@ietf.org
> > Objet : [Add] I-D Action: draft-ietf-add-dnr-04.txt
> >
> >
> > A New Internet-Draft is available from the on-line Internet-Drafts
> > directories.
> > This draft is a work item of the Adaptive DNS Discovery WG of the IETF.
> >
> >         Title           : DHCP and Router Advertisement Options for the
> > Discovery of Network-designated Resolvers (DNR)
> >         Authors         : Mohamed Boucadair
> >                           Tirumaleswar Reddy
> >                           Dan Wing
> >                           Neil Cook
> >                           Tommy Jensen
> >       Filename        : draft-ietf-add-dnr-04.txt
> >       Pages           : 21
> >       Date            : 2021-12-08
> >
> > Abstract:
> >    The document specifies new DHCP and IPv6 Router Advertisement options
> >    to discover encrypted DNS servers (e.g., DNS-over-HTTPS, DNS-over-
> >    TLS, DNS-over-QUIC).  Particularly, it allows to learn an
> >    authentication domain name together with a list of IP addresses and a
> >    set of service parameters to reach such encrypted DNS servers.
> >
> >
> > The IETF datatracker status page for this draft is:
> > https://datatracker.ietf.org/doc/draft-ietf-add-dnr/
> >
> > There is also an htmlized version available at:
> > https://datatracker.ietf.org/doc/html/draft-ietf-add-dnr-04
> >
> > A diff from the previous version is available at:
> > https://www.ietf.org/rfcdiff?url2=draft-ietf-add-dnr-04
> >
> >
> > Internet-Drafts are also available by rsync at rsync.ietf.org::internet-
> > drafts
> >
> >
> > --
> > Add mailing list
> > Add@ietf.org
> > https://www.ietf.org/mailman/listinfo/add
>
>
> _________________________________________________________________________________________________________________________
>
> Ce message et ses pieces jointes peuvent contenir des informations
> confidentielles ou privilegiees et ne doivent donc
> pas etre diffuses, exploites ou copies sans autorisation. Si vous avez
> recu ce message par erreur, veuillez le signaler
> a l'expediteur et le detruire ainsi que les pieces jointes. Les messages
> electroniques etant susceptibles d'alteration,
> Orange decline toute responsabilite si ce message a ete altere, deforme ou
> falsifie. Merci.
>
> This message and its attachments may contain confidential or privileged
> information that may be protected by law;
> they should not be distributed, used or copied without authorisation.
> If you have received this email in error, please notify the sender and
> delete this message and its attachments.
> As emails may be altered, Orange is not liable for messages that have been
> modified, changed or falsified.
> Thank you.
>
> --
> Add mailing list
> Add@ietf.org
> https://www.ietf.org/mailman/listinfo/add
>
> _________________________________________________________________________________________________________________________
>
>
>
> Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc
>
> pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler
>
> a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration,
>
> Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci.
>
>
>
> This message and its attachments may contain confidential or privileged information that may be protected by law;
>
> they should not be distributed, used or copied without authorisation.
>
> If you have received this email in error, please notify the sender and delete this message and its attachments.
>
> As emails may be altered, Orange is not liable for messages that have been modified, changed or falsified.
>
> Thank you.
>
> _________________________________________________________________________________________________________________________
>
> Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc
> pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler
> a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration,
> Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci.
>
> This message and its attachments may contain confidential or privileged information that may be protected by law;
> they should not be distributed, used or copied without authorisation.
> If you have received this email in error, please notify the sender and delete this message and its attachments.
> As emails may be altered, Orange is not liable for messages that have been modified, changed or falsified.
> Thank you.
>
> --
> Add mailing list
> Add@ietf.org
> https://www.ietf.org/mailman/listinfo/add
>