Re: [Add] [EXTERNAL] Re: draft-grover-add-policy-detection-00

Rob Sayre <sayrer@gmail.com> Wed, 17 July 2019 19:17 UTC

Return-Path: <sayrer@gmail.com>
X-Original-To: add@ietfa.amsl.com
Delivered-To: add@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2EB181208CB for <add@ietfa.amsl.com>; Wed, 17 Jul 2019 12:17:39 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.998
X-Spam-Level:
X-Spam-Status: No, score=-1.998 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id xoGUmOu6IkYE for <add@ietfa.amsl.com>; Wed, 17 Jul 2019 12:17:37 -0700 (PDT)
Received: from mail-io1-xd42.google.com (mail-io1-xd42.google.com [IPv6:2607:f8b0:4864:20::d42]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D2E9C1208C9 for <add@ietf.org>; Wed, 17 Jul 2019 12:17:37 -0700 (PDT)
Received: by mail-io1-xd42.google.com with SMTP id f4so47557531ioh.6 for <add@ietf.org>; Wed, 17 Jul 2019 12:17:37 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=ujxDB+uPaQxgMm2pUwXw4PtAPoA+jmP9VXpMvcgrDDY=; b=ECCArZOamcZXsuRsMXbR7LIPOCEWYFmUv0SGU7w2X+Gm89MNU6+bXtKQiBc7m13EW1 ccM2HMc+AfPQQa/CkRMG7i/ZqGoPArF4seryMnsbKS1VJddDtMDhsEdsjCHltDlZTUSr w+rU7T9I1vLphXa8UFTh4dBLKcWTuEDT79W+yEDz4bjj7M1Vdy/gd88KXefj9xQLALJk 5a7FiEKJwxmsPSrog35PiDv+TdCY5ezBFP+NuBmfx65xyI685qxZ05fyD2HRaOM80+Ec jP7KvUUqAlmq2yJNSEOYLcOfZ8avgupnLtypzlmBlast85fnt7BVB2h9yS3BEq+tcYY+ 1E/Q==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=ujxDB+uPaQxgMm2pUwXw4PtAPoA+jmP9VXpMvcgrDDY=; b=j1FwMa909TYeSkqFHzcD9hK18IwS8we2sEYwO6yIEk6y0UYBPq+fR/GsHFHP0/PbOR rzWuWohIx7xqgPjcPSAvkX0mIB8qGWJ4n0xJzGjz/E/eYijqalVuJGx6lnA9bebG48f1 yWIMTmu1jL8Ca6UZS2tQOd9cERFn2gUHbIshDUxuNJxX0hzG6m+kgzOdt/G35RSIgwMK /dMvzep3L8OTEWwDW5DkRKDGbHhIkb1DNYrtrcH26Mvt/ggVMDyj84xb8RsnOgNdg3UL GKaHf+ZR9O93ymaDk2JX1FNKvxJBMoVuWhYHWHeUtnsp/4KY3x/Fw/m3wWighCrkJEWX 1EMg==
X-Gm-Message-State: APjAAAVEvyYdiMmdW6B89Jn0iHnm/Z90s8bLi+64bF+BWI6enT51Gg2S uEO0ynP5kUG2IQYN7yOs5pvjCCGu3kU/7DOYMxM=
X-Google-Smtp-Source: APXvYqwo1OKRXJNYBmlYaWJJqr9ZtZwrT+EiRoEozndfvwmr/6MYHQY3Z/rO+ZjVK540NoPUOwzY6nwzkYvioNWahLc=
X-Received: by 2002:a02:1087:: with SMTP id 129mr45429420jay.131.1563391057035; Wed, 17 Jul 2019 12:17:37 -0700 (PDT)
MIME-Version: 1.0
References: <CAChr6SwEUz9MrdRA0bnv9f-oNi0oUHkfRKjd9-o6jwhuckLXdw@mail.gmail.com> <CAFWeb9LNdT=EYVKTsYDxcBCQKoQFNShKotYtWujt4U9GA-V1mg@mail.gmail.com> <CAFWeb9+eWKSKY9O2JLn9-0+Zq7hrD48F-y+Y4T-iRaaF0vtdOA@mail.gmail.com> <A45F4F74-D6C1-435A-A52F-C2DEA82E2999@sky.uk> <CAFWeb9JVBj+Yehup5q4v9X-7XDY+02frd-04AQGL2HoSLON2qA@mail.gmail.com> <CABcZeBMY9q9vKGse1svzbvXF_dSHA+9q06j4ugDVCZP9VT1koQ@mail.gmail.com> <CAChr6Sz5Rfz=UxOYuPguSvVK2HCX2ZoA1-FytW7+EOUxN8y46Q@mail.gmail.com> <CABcZeBNB7ASu2U3ZMBZ+OOxEhbSnhDXwFN3Lsex1uzVSDv3R=Q@mail.gmail.com> <CAChr6SwEwRRX7BA6ZCeBuC93hFxbfi3d7G_3G3VA7Lm09yuneg@mail.gmail.com> <CABcZeBNa97Vb6Fw-fMhoZnMezGtm3nJODENN4=XXsz7GWxf2Cg@mail.gmail.com> <CAChr6Sxm__NroZ92v4HL_6iCa62fwYgNw9r8ZDAxCdzVwNoDGw@mail.gmail.com> <20190716190219.5DEF4156CDF0@fafnir.remote.dragon.net> <CAChr6SzSkVU5xbh0sZCCEgd7BUdr-dMorNq=5iMkWp66k8PVow@mail.gmail.com> <15205609-8203-4C6F-9DE7-14D492873C51@rfc1035.com> <CAChr6Syf_=3__jcv6D7b1JokGFYpFuy9y9419V0nCAx=MMh24A@mail.gmail.com> <1513817825.9983.1563350802523@appsuite-gw1.open-xchange.com> <CA+9kkMAdGF_U-syxtFVz-MfBfv-GF_CFouvuUhqcSH96-=Hkjg@mail.gmail.com> <ABBFB472-DC7C-48E2-999E-C364BFD3260E@open-xchange.com> <CA+9kkMBO3LAhVmC+PzBoO7V5vzrfeYyrEPdq6s5nRBrYniqaNA@mail.gmail.com> <CAH1iCiqsSWRm7hbwcaoRYUaoLf-DCDXw8cZy7abaYbOAMjJBPw@mail.gmail.com> <CA+9kkMBjL5VqiH+vjxgTFq2d76O0yoyeJdQF6HhKvO_pOdzDgA@mail.gmail.com>
In-Reply-To: <CA+9kkMBjL5VqiH+vjxgTFq2d76O0yoyeJdQF6HhKvO_pOdzDgA@mail.gmail.com>
From: Rob Sayre <sayrer@gmail.com>
Date: Wed, 17 Jul 2019 12:17:25 -0700
Message-ID: <CAChr6SwweOZPtcfnaYiJo1ikrBN-LxF2ff09=sBc5AjCqXW7jg@mail.gmail.com>
To: Ted Hardie <ted.ietf@gmail.com>
Cc: Brian Dickson <brian.peter.dickson@gmail.com>, Neil Cook <neil.cook@open-xchange.com>, Vittorio Bertola <vittorio.bertola@open-xchange.com>, add@ietf.org
Content-Type: multipart/alternative; boundary="0000000000009987ab058de55876"
Archived-At: <https://mailarchive.ietf.org/arch/msg/add/OwzDSTn4GL0g50B8xW42wKBFkaE>
Subject: Re: [Add] [EXTERNAL] Re: draft-grover-add-policy-detection-00
X-BeenThere: add@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Applications Doing DNS <add.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/add>, <mailto:add-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/add/>
List-Post: <mailto:add@ietf.org>
List-Help: <mailto:add-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/add>, <mailto:add-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 17 Jul 2019 19:17:39 -0000

On Wed, Jul 17, 2019 at 11:56 AM Ted Hardie <ted.ietf@gmail.com> wrote:

> On Wed, Jul 17, 2019 at 11:40 AM Brian Dickson <
> brian.peter.dickson@gmail.com> wrote:
>
>>
>> The root of the problem is visible in "if they chose not to". The nature
>> of DoH, is that the network operator (regardless of who they are) is unable
>> either detect or prevent guests (or users or BYOD or whoever) from not
>> complying with your network policy.
>>
>
So, I thought we were designing the Internet here. There's no network
policy. People are perfectly welcome to have a policy for their house or
their company, but the IETF is not required to design for that purpose.

It doesn't make sense to call it "BYOD", use the word "policy", and insist
on insecure traffic.

thanks,
Rob