Re: [Add] Updated charter proposal for ADD

"Livingood, Jason" <Jason_Livingood@comcast.com> Wed, 15 January 2020 15:37 UTC

Return-Path: <Jason_Livingood@comcast.com>
X-Original-To: add@ietfa.amsl.com
Delivered-To: add@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B1B92120091 for <add@ietfa.amsl.com>; Wed, 15 Jan 2020 07:37:32 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.7
X-Spam-Level:
X-Spam-Status: No, score=-2.7 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_LOW=-0.7, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=comcast.com header.b=xfijBer6; dkim=pass (2048-bit key) header.d=comcast.com header.b=5GquIW49; dkim=fail (1024-bit key) reason="fail (message has been altered)" header.d=comcastcorp.onmicrosoft.com header.b=BsJ3q/yc
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id X735pAT1Em_L for <add@ietfa.amsl.com>; Wed, 15 Jan 2020 07:37:27 -0800 (PST)
Received: from mx0b-00143702.pphosted.com (mx0b-00143702.pphosted.com [148.163.141.77]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 9608D120025 for <add@ietf.org>; Wed, 15 Jan 2020 07:37:27 -0800 (PST)
Received: from pps.filterd (m0156894.ppops.net [127.0.0.1]) by mx0b-00143702.pphosted.com (8.16.0.42/8.16.0.42) with SMTP id 00FFb8sF006287 for <add@ietf.org>; Wed, 15 Jan 2020 10:37:26 -0500
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=comcast.com; h=from : to : subject : date : message-id : references : in-reply-to : content-type : content-id : content-transfer-encoding : mime-version; s=20190412; bh=4K0vDjZcoVGrVYIwBO0CTg/ijxAal+4myiscICZECeQ=; b=xfijBer6Hj6bc0E4zA/7Hd4kZJ+mqmoCbpvLQt5lFyHYRUwjxyickDl1acvutgZtP9dU 9pzHarwImFcaxnaTr3doX3fHCPPT/icqE1yvkfS5DNvQPFAVbI+NPNDncyYZ4oDnooc7 6Cz8HHS8WbprbPmj3pMMjH+HKjyZcyqY/wPDJ2TtLN1II2ceYUck/EtxgKVcjrxyWUWr YYdWkEJg4u578OyV4Zemzumw6n9XMB/PhbqwppxHTA/bFjInN3hMip5peEmHz6oqcU9J upF8TpIZ1j+DHh2WBh3DVipCKhQJg/sTNZkSC7MUysj1Orag/+yjwpEEdVnxUxgAemit nQ==
Received: from copdcmhout02.cable.comcast.com (copdcmhout02.cable.comcast.com [96.114.158.212]) by mx0b-00143702.pphosted.com with ESMTP id 2xgw1ad3uq-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT) for <add@ietf.org>; Wed, 15 Jan 2020 10:37:26 -0500
DKIM-Signature: v=1; a=rsa-sha256; d=comcast.com; s=20190412; c=relaxed/simple; q=dns/txt; i=@comcast.com; t=1579102643; x=2443016243; h=From:Sender:Reply-To:Subject:Date:Message-ID:To:Cc:MIME-Version:Content-Type: Content-Transfer-Encoding:Content-ID:Content-Description:Resent-Date:Resent-From: Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:In-Reply-To:References:List-Id: List-Help:List-Unsubscribe:List-Subscribe:List-Post:List-Owner:List-Archive; bh=4K0vDjZcoVGrVYIwBO0CTg/ijxAal+4myiscICZECeQ=; b=5GquIW49FVAYk/ysslBMaxnWsfXWT3Dv6eUiLupzXX499NXEG0QXIKNABthiYLJF Hvl2pzW1JDoxgT0b1+wzAGmaAYaUg7otTMSC4BOwUMTd7VV/MzoXTq/yuY2vLv0d FKvnkLBGxihXSDI/hLQb6AcWv8OKY4Rr5KMxjQTGCF6dMHcjfxYbSAwME+cI4TLw GITAE6D3OW9+qiZi7oyLFYX8CUoo8BwfOnKuFQHmS8jYAQL45e5LOA+m+yp8yYx9 j2DuuYki5o1LnhOoRZeGxRf+eLbK5ZoIeDHucFr+e34URLwG23hOa3qwTibltdHT /bi5ltDY/aH3s8J9MBxT8g==;
X-AuditID: 60729ed4-237ff7000000bc72-81-5e1f31b3dc2e
Received: from COPDCEX22.cable.comcast.com (copdcmhoutvip.cable.comcast.com [96.114.156.147]) (using TLS with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (Client did not present a certificate) by copdcmhout02.cable.comcast.com (SMTP Gateway) with SMTP id ED.26.48242.3B13F1E5; Wed, 15 Jan 2020 08:37:23 -0700 (MST)
Received: from COPDCEX13.cable.comcast.com (147.191.124.144) by COPDCEX22.cable.comcast.com (147.191.124.153) with Microsoft SMTP Server (TLS) id 15.0.1473.3; Wed, 15 Jan 2020 08:37:22 -0700
Received: from COPDCEXEDGE01.cable.comcast.com (96.114.158.213) by COPDCEX13.cable.comcast.com (147.191.124.144) with Microsoft SMTP Server (TLS) id 15.0.1473.3 via Frontend Transport; Wed, 15 Jan 2020 08:37:22 -0700
Received: from NAM11-CO1-obe.outbound.protection.outlook.com (104.47.56.171) by webmail.comcast.com (96.114.158.213) with Microsoft SMTP Server (TLS) id 15.0.1473.3; Wed, 15 Jan 2020 10:37:07 -0500
Received: from BN6PR1101MB2195.namprd11.prod.outlook.com (10.174.117.21) by BN6PR1101MB2163.namprd11.prod.outlook.com (10.174.116.7) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2602.12; Wed, 15 Jan 2020 15:37:05 +0000
Received: from BN6PR1101MB2195.namprd11.prod.outlook.com ([fe80::8ba:8611:cdf:1cff]) by BN6PR1101MB2195.namprd11.prod.outlook.com ([fe80::8ba:8611:cdf:1cff%6]) with mapi id 15.20.2623.018; Wed, 15 Jan 2020 15:37:05 +0000
From: "Livingood, Jason" <Jason_Livingood@comcast.com>
To: Tommy Pauly <tpauly=40apple.com@dmarc.ietf.org>, ADD Mailing list <add@ietf.org>
Thread-Topic: [Add] Updated charter proposal for ADD
Thread-Index: AQHVyyt0XhPiRXWqRUiQK5UHo0jSBafriR0A
Date: Wed, 15 Jan 2020 15:37:05 +0000
Message-ID: <7F6FFAC3-0851-4334-B859-A412131FD91A@cable.comcast.com>
References: <236B0A34-8C7F-49D2-8075-5AF5AC35BDFB@apple.com>
In-Reply-To: <236B0A34-8C7F-49D2-8075-5AF5AC35BDFB@apple.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/10.21.0.200113
x-originating-ip: [2001:558:1438:13:c1d2:8cbc:7ffa:bcd0]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: d13a64a2-0e36-4313-ae27-08d799d0c653
x-ms-traffictypediagnostic: BN6PR1101MB2163:
x-microsoft-antispam-prvs: <BN6PR1101MB21631E0060A1FD069326B5E1C7370@BN6PR1101MB2163.namprd11.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:9508;
x-forefront-prvs: 02830F0362
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(4636009)(136003)(39860400002)(396003)(376002)(366004)(346002)(189003)(199004)(2616005)(316002)(64756008)(66476007)(966005)(186003)(66556008)(66946007)(66446008)(76116006)(478600001)(91956017)(33656002)(15650500001)(2906002)(81156014)(5660300002)(66574012)(110136005)(8936002)(6512007)(71200400001)(6506007)(8676002)(6486002)(81166006)(86362001); DIR:OUT; SFP:1102; SCL:1; SRVR:BN6PR1101MB2163; H:BN6PR1101MB2195.namprd11.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; MX:1; A:1;
received-spf: None (protection.outlook.com: cable.comcast.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-ms-exchange-transport-forked: True
arc-seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=mU5/kiR+bVnvQziTQhnMsC+Tgl29lpK+Dh0OIYGq00prKijoOJUEFqthiXZhXzalcdiuX/N9ZUIXF5Xzcv0HiQkDpVW23AxDEPkhxBtqWCXwKcIQEYcGg8NebY52rv5zpNHBWqTJjpK8Wgm0YeodDlYLWwcsgGjuZr2YkWa2boutZztazLieMEOp4j5wjXWCX+n7f20hjFw6+ezvn0hwnxAgTZF1QRSss1tdHmqHmOwwQ9JhcVvhiKek+UHcFnCG+wJ/Di4j53WETjlRz1+pnWkVO63BtnU69iV89auawn+RAyeDuCwYQurY7iQBYt/v0/yyKXpoZvvh88T3wyOvDA==
arc-message-signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=VQ9z9fThzq6SnuXhorNU6BiNNcorALRxiKDqUjbP6ek=; b=jVLUpJb+ucb9aGhr+qB5mIpJgOo7S8PSd8XlcRVr7GRmT7py56xRnX8VGAoim4quPTTHL/X1ZoMoFeFy1b1ogiGN0HNlshJ6TXBi/tqCAyN8TbGYb4G1WeV+oHrT+w8USQWT225KhjqqsHWVO4PXFnkxB9NFnHYJGs3OFSfV+nyaNem9oxmxkHS94wvbBiLM0GOcnFJL9qklqXs4/0IUBWAzjBlsBlgh5jwOSmUsHG5Qv1iMXeFpkS0LQUNQQqhD0Zyipn0a3Q7QMWitZq5ZH2xCeY9BDvo9M25ndhDNuJOevijDmIJVagqHbTHsXpLiItsHhkOidM/mdGsBD5ZRTw==
arc-authentication-results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cable.comcast.com; dmarc=pass action=none header.from=cable.comcast.com; dkim=pass header.d=cable.comcast.com; arc=none
dkim-signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=comcastcorp.onmicrosoft.com; s=selector1-comcastcorp-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=VQ9z9fThzq6SnuXhorNU6BiNNcorALRxiKDqUjbP6ek=; b=BsJ3q/ycCLwBJDPXNqdc3bduoKbTJKyW4LyBe6T24WKsBUV2XhCBozwfd7LMPHJ6nlEHHfL7H88SIGzUHoW0F+S55lYSZnrA9McxT6/DnS1uu2KXY/oajbP6qcq5kaNqE3aTW7f6IYn8HtlvBUUlDtblm19llHQaQemDX9mQljU=
x-ms-exchange-crosstenant-network-message-id: d13a64a2-0e36-4313-ae27-08d799d0c653
x-ms-exchange-crosstenant-originalarrivaltime: 15 Jan 2020 15:37:05.3835 (UTC)
x-ms-exchange-crosstenant-fromentityheader: Hosted
x-ms-exchange-crosstenant-id: 906aefe9-76a7-4f65-b82d-5ec20775d5aa
x-ms-exchange-crosstenant-mailboxtype: HOSTED
x-ms-exchange-crosstenant-userprincipalname: ASYVIVszCny71VnkjqzqOT0qx2IqlrjZ9xYze9aoznNgmVPoTI1Q3aeqqMjfirZyqQ19jD0Bmlb+UzebRL3OE4Cips1k6B6fwDvrsTK21jo=
x-ms-exchange-transport-crosstenantheadersstamped: BN6PR1101MB2163
x-originatororg: cable.comcast.com
Content-Type: text/plain; charset="utf-8"
Content-ID: <1DC60245DE98B3419B7A3DE87321102E@namprd11.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-CFilter-Loop: Forward
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFvrHKsWRmVeSWpSXmKPExsWSUDRnsu5mQ/k4g8/v9Sz+n17HZtEz6RWz A5PHiWVXWD2WLPnJFMAU1cBoU5JRlJpY4pKalppXnGrHpYABbJJS0/KLUl0Ti3Iqg1JzUhOx KwOpTEnNySxLLdLHaow+VnMSupgyFp86w1zwR73i4ZUvTA2MP9S6GDk5JARMJB5cXcLaxcjF ISRwmEni/4Zl7BDOIUaJiW+/MIJUCQncYZTYMlUUInGSUeJIVxszhDONSWLG+U5GCOcRo8SO fQ/BWtgEzCTuLrzCDGKLCIRJ7FnexAZiCwsYS/y73sYCETeReP3vJzuEbSSxeNoTsF4WAVWJ 7s5+VhCbV8BF4vrrz6wQZ9hI7HswCayXU8BWYt39d2D1jAJiEt9PrWECsZkFxCVuPZnPBPGc gMSSPeeZIWxRiZeP/4HNERXQl7h3fTVUb4rE4q5FUPUWEh9mPmKBsGUlLs3vZoSwfSWWNqxh g7B1JL6emANVky/xcsY0qBo1iRtvOoB2cQDZMhJHZrmCwkRCYDqLxPsdN5hA4kICWRJvr9pB lMtJrOp9yDKB0WQWkqtnAVUxC2hKrN+lD2F6SOzriYGoUJSY0v2QfRY4TAQlTs58wrKAkXUV I5+lmZ6hoYmeoamFnpGh0SZGcKqcd2UH4+XpHocYBTgYlXh4RcXk44RYE8uKK3OB0crBrCTC e3KGbJwQb0piZVVqUX58UWlOavEhRmkOFiVxXjbbX7FCAumJJanZqakFqUUwWSYOTqkGRjXV 81xt3k7vWkOt/qcaZ4jf3SKm3qVo9DreccHBqi0lx/5Y1W3zftLmz+WeFsEjOUP62E6uK9pL g5ySfeNjnLqMTz2R1Dn3o6AjcKbBhJO/X3/0jdzTZ3UjNuT8sn+FVvl3LuzLe3b7qYhR96Ol MvdTfn93suU9Yea0Kuq72Y89l3JsrlQUKLEUZyQaajEXFScCALx/+lSRAwAA
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:6.0.138, 18.0.572 definitions=2020-01-15_02:2020-01-15, 2020-01-15 signatures=0
X-Proofpoint-Spam-Reason: safe
Archived-At: <https://mailarchive.ietf.org/arch/msg/add/Nmomdxhge0MwiKQWhC7kKd73I-8>
Subject: Re: [Add] Updated charter proposal for ADD
X-BeenThere: add@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Applications Doing DNS <add.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/add>, <mailto:add-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/add/>
List-Post: <mailto:add@ietf.org>
List-Help: <mailto:add-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/add>, <mailto:add-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 15 Jan 2020 15:37:33 -0000

I also support this charter & appreciate the hard work done to try to move to a consensus view (thanks Tommy & Glenn in particular).

A number of folks have objected to the "Any mechanism..." paragraph - so removal of that seems fine.

Jason

On 1/14/20, 5:39 PM, "Add on behalf of Tommy Pauly" <add-bounces@ietf.org on behalf of tpauly=40apple.com@dmarc.ietf.org> wrote:

    Hi all,

    I wanted to share an updated proposal for an ADD charter, based on the feedback and discussion on the list in the past several weeks.

    This is based on the original proposal that was sent in December, taking into account various comments and suggestions. Glenn Deen, Andrew Campling, and I worked on this revision together and came to consensus on its contents.

    Thoughts and comments are welcome as always!

    (Note that the proposed name of the group was not changed, and is entirely open to bikeshedding. Naming is hard!)

    Best,
    Tommy



    Adaptive DNS Discovery (ADD)
    ====================================
    Proposed Working Group Charter

    Sending DNS messages over encrypted transports, as defined in DNS over
    TLS (DoT) [RFC 7858] and DNS over HTTPS (DoH) [RFC 8484], provides
    benefits to the security and privacy of DNS data. Clients, such as
    applications and host operating systems, have started adopting these
    protocols to provide these user benefits.

    This working group will focus on discovery and selection of DNS resolvers
    by DNS clients in a variety of networking environments, including public
    networks, private networks, and VPNs; supporting both encrypted and
    unencrypted resolvers.

    Clients adopting encrypted DNS protocols need to determine which DNS
    servers support encrypted transports, and which server to use for specific
    queries if multiple servers are available. These decisions can vary based
    on the network environment, and also based on the content and purpose of
    the client queries.

    Network operators that start offering DNS encryption on their servers also
    need a way to indicate this support to clients. Communicating information
    about resolver configuration and behavior allows clients to make more
    informed decisions about which DNS servers to use. For example, a resolver
    may be able to resolve private or local names as a split DNS server.

    The Adaptive DNS Discovery (ADD) working group will work on the following
    deliverables:

    - define a mechanism that allows clients to discover DNS resolvers,
    including encrypted DNS servers, that are available to the client
    either on the public Internet or on private or local networks;

    - define a mechanism that allows communication of DNS resolver
    information to clients for use in selection decisions;

    - develop an informational document that describes how client
    applications and systems can manage selection of DNS resolvers
    in various network environments and use cases.

    Any mechanisms that specify interactions between clients and
    servers must provide the security properties expected of IETF
    protocols, e.g., confidentiality protection, integrity protection,
    and authentication with strong work factor.

    This working group will coordinate with dnsop, doh, and dprive for any
    changes required in DNS protocols. It will also work with capport to
    ensure that solutions are applicable to captive networks.

    --
    Add mailing list
    Add@ietf.org
    https://urldefense.com/v3/__https://www.ietf.org/mailman/listinfo/add__;!!CQl3mcHX2A!TKpnzyf-ATAppvFlL-4frLIh8Q5rzbJdvXIsHTKvpJTfV_ukdwc8AgjsYWI6snmjuppSDw$