Re: [Add] fixing coffee shop brokenness with DoH

Ted Lemon <mellon@fugue.com> Wed, 24 July 2019 18:21 UTC

Return-Path: <mellon@fugue.com>
X-Original-To: add@ietfa.amsl.com
Delivered-To: add@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0E15312034D for <add@ietfa.amsl.com>; Wed, 24 Jul 2019 11:21:02 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.898
X-Spam-Level:
X-Spam-Status: No, score=-1.898 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=fugue-com.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id vHVsZBezaxxG for <add@ietfa.amsl.com>; Wed, 24 Jul 2019 11:21:00 -0700 (PDT)
Received: from mail-qt1-x835.google.com (mail-qt1-x835.google.com [IPv6:2607:f8b0:4864:20::835]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0AC30120112 for <add@ietf.org>; Wed, 24 Jul 2019 11:21:00 -0700 (PDT)
Received: by mail-qt1-x835.google.com with SMTP id l9so46420136qtu.6 for <add@ietf.org>; Wed, 24 Jul 2019 11:20:59 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=fugue-com.20150623.gappssmtp.com; s=20150623; h=from:message-id:mime-version:subject:date:in-reply-to:cc:to :references; bh=ehm4+YQB2q0hsh41VrD+G7WEQiaeJ+kaRLFeDufHNfc=; b=oHJYRHTzgNTu6uURd/XFkRKWXq5+MGJXTN5bsqzYpq8o+r8LJEmX50bqR+ccMMqGos EWPV0TKqo+S7uBsTcprwYCYd8z3uVK6s43San3VWEz5ILt7vXqaKQOQE+SUXxkVlXlbu kYU3H8wZGsZW2nTxGQq7kHVb8Fknvm3ZBgsIhx8e+RH8mE6ru50s/cz/4MosSIBGvOUD 7fYeajyxY5YMFIs2TbjO6r4KzDqM58S8VJPDg9mqGOid1oiGCMwjo1Ytf+1/k2wnrLsC 1gIrxEOhFGZUdfjnQjBy6V74xvgKWwutkz0Xrar/etIj/xxofIdMJGFvcmtXUc093f+h v6uw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:message-id:mime-version:subject:date :in-reply-to:cc:to:references; bh=ehm4+YQB2q0hsh41VrD+G7WEQiaeJ+kaRLFeDufHNfc=; b=T+3nJqbJWhWABjhl7Ime72GdgXSiekshQqwoeDEykgCmQMtZeEtnLXZBVFE3q4v+gO tXYlGoGV2LjdzmNYO931jqayMLGzcAKAbrZlKe/QQ096rOBpmasbdkA+XU1kPeLqZnG5 E88Nf7iXy38nBR/Nw0PG9tDKOyvTQw2Nz4HSzk4LIdKvisacNiSEDOLWuN6x/vINf7O6 oRYqN8hL/FeDy76hrlDSJ3BA/lrAW8SKi+ypmqUr01FKX2WY4Y9g2pMvV36bChyC9SN6 4S7aLb/qnuuH/vPcB6+X3uJUjTG9Ek1wHc0WeVUjpit7MGylPx0Wx83kajpPryXLGkOy RaWA==
X-Gm-Message-State: APjAAAXqrwWWHhG2h9b+a/HvqCvRjh6Z6K0/atLSetpceuurZuDOWTPa Rrw87QkJzjZDDRPo4oxMmmDZXQ==
X-Google-Smtp-Source: APXvYqy/y6K+1iiXo/gN5Zckaf0zdQFEoesUe284TMDFYay84HV8WpxurRvaUF3qyK8eyTspZIrKMQ==
X-Received: by 2002:ac8:31dc:: with SMTP id i28mr59937249qte.226.1563992457924; Wed, 24 Jul 2019 11:20:57 -0700 (PDT)
Received: from ?IPv6:2001:67c:370:128:b45e:4ed5:44e0:bf73? ([2001:67c:370:128:b45e:4ed5:44e0:bf73]) by smtp.gmail.com with ESMTPSA id h18sm19761993qkk.93.2019.07.24.11.20.57 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Wed, 24 Jul 2019 11:20:57 -0700 (PDT)
From: Ted Lemon <mellon@fugue.com>
Message-Id: <CC40FCD6-67C2-4DAF-A0B2-0AF5DE97F743@fugue.com>
Content-Type: multipart/alternative; boundary="Apple-Mail=_A54FE317-4FD6-4264-9A45-BC961F1B9B15"
Mime-Version: 1.0 (Mac OS X Mail 12.4 \(3445.104.11\))
Date: Wed, 24 Jul 2019 14:20:55 -0400
In-Reply-To: <CABcZeBM6+r5XnkpwQSbQaZ9hmD1DKkA4gBjbWX03RVgGrHjrtw@mail.gmail.com>
Cc: Brian Dickson <brian.peter.dickson@gmail.com>, Jim Reid <jim@rfc1035.com>, "add@ietf.org" <add@ietf.org>, Rob Sayre <sayrer@gmail.com>
To: Eric Rescorla <ekr@rtfm.com>
References: <CAChr6Sx9TEt6CMzRRrdb-HwT_k987oW=4yF1FCbDF17zkaE2Vg@mail.gmail.com> <2D09D61DDFA73D4C884805CC7865E6114E23910C@GAALPA1MSGUSRBF.ITServices.sbc.com> <14DF8769-A817-4C06-9140-80198518244F@akamai.com> <CAChr6SzH1EycAr5n+dK5BQcG=0Zsw66qE=8Rptvq7SEoEvQQ=Q@mail.gmail.com> <E5A0DAE2-A718-41EA-B490-58ABD0F31CF2@rfc1035.com> <CABcZeBMqvZivS_Hk_2mSOAOnM+mHy1mtcwnHVFc14v_jdkgU=Q@mail.gmail.com> <4DE9B8B1-36D5-4EB5-BE84-D61C182F7372@fugue.com> <CABcZeBN+4RGWN0+xhtb-bMtSJ1B0FAU4JjRJTOSd1x_9JJZBWg@mail.gmail.com> <D361E72B-3783-4E57-8F08-8B418639BB29@fugue.com> <CABcZeBP2MY3pjeZv4Q+1Kj3_GKOgVq8+OYe7im2gYvBzy=Mz7g@mail.gmail.com> <F8A56D5D-B05E-4E80-880C-60D6B550F107@fugue.com> <CABcZeBOO5yvcm=DvDjr-7v4AvVG=13Zy--j362eE0Qqp7hcRaw@mail.gmail.com> <4FC4184E-E41D-420E-A594-60ECF3CD73F1@fugue.com> <CABcZeBOjWQr1HWbGaCkpdR1S7FQUmum=by_SOYWB9OENy8Y-hA@mail.gmail.com> <7BE32238-2442-4954-B95E-1C089C8C86E7@fugue.com> <CABcZeBM8bY0bjZjgpozMULL++4v98SO-tyFnqYvG0714GqWgbw@mail.gmail.com> <CAH1iCioacfKVV14QcQ9zsNed2cDXVhJDY2wknaOzRsarK0GJcA@mail.gmail.com> <CABcZeBOMv=HdV5e9-eBoWLQhh=p6uy4OKhAqo0Q5Lgg7c91kOA@mail.gmail.com> <CAH1iCioQJrzvcwTD-7uTsBu2=CFma7pYQpJSGDV1bfmvk-=5rQ@mail.gmail.com> <CABcZeBM6+r5XnkpwQSbQaZ9hmD1DKkA4gBjbWX03RVgGrHjrtw@mail.gmail.com>
X-Mailer: Apple Mail (2.3445.104.11)
Archived-At: <https://mailarchive.ietf.org/arch/msg/add/LKZ-YXo6_lA1hXDxCmXpN68QomM>
Subject: Re: [Add] fixing coffee shop brokenness with DoH
X-BeenThere: add@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Applications Doing DNS <add.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/add>, <mailto:add-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/add/>
List-Post: <mailto:add@ietf.org>
List-Help: <mailto:add-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/add>, <mailto:add-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 24 Jul 2019 18:21:02 -0000

On Jul 24, 2019, at 2:10 PM, Eric Rescorla <ekr@rtfm.com> wrote:
> This also seems like an edge case. The vast majority of clients do not have two independently controlled resolvers.

That sounds like a problem statement.

But it’s really easy to configure two resolvers.   Just put two IP addresses in the dialog box.   The stub resolver, if it is following the standard, will consult both, particularly when one fails.