Re: [Add] [EXTERNAL] Re: Browser Administrative Authority

"Livingood, Jason" <Jason_Livingood@comcast.com> Wed, 29 May 2019 15:17 UTC

Return-Path: <Jason_Livingood@comcast.com>
X-Original-To: add@ietfa.amsl.com
Delivered-To: add@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E1EB4120113 for <add@ietfa.amsl.com>; Wed, 29 May 2019 08:17:31 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level:
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=comcast.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id KCwzSfWMHQ09 for <add@ietfa.amsl.com>; Wed, 29 May 2019 08:17:30 -0700 (PDT)
Received: from copdcmhout01.cable.comcast.com (copdcmhout01.cable.comcast.com [162.150.44.71]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6C86B12010C for <add@ietf.org>; Wed, 29 May 2019 08:17:30 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; d=comcast.com; s=20190412; c=relaxed/simple; q=dns/txt; i=@comcast.com; t=1559143039; x=2423056639; h=From:Sender:Reply-To:Subject:Date:Message-ID:To:CC:MIME-Version:Content-Type: Content-Transfer-Encoding:Content-ID:Content-Description:Resent-Date:Resent-From: Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:In-Reply-To:References:List-Id: List-Help:List-Unsubscribe:List-Subscribe:List-Post:List-Owner:List-Archive; bh=+plfyyjuuDtE9zX2cw9b75oewoSrD8L9DZkSMAHDgPQ=; b=FV7lK5FZ4g9CvsxEEbJTz7rp4I52QwIbC74P4OwBN2Wrl8PAoVaZwDi7DmOhMPb1 U1+qEaJzMfH5PzCo9l2p9lErC3909sCldZLbZBCtLy/6iYf7fOGTkia6NM8u4yJw B7hh5tCWs25x2fiKPhvvhyUJolrEmjhml4ivPuA1cNsVrZXgfx/lBvGTYbNpEw1F 2QxbvgV4g/X2ARV5vUu+Jos8u4rqRoIWTCX16wTyAxXAB6tBaawCbWSPNih5ldUW PZJtUguGvto5YQ0OQALgu4YnVljHme5y9EA7dLIEvMe67DOxHJzNr+5i+kWtidZe Lo83KYuxTPJ5Psr5J0gD/A==;
X-AuditID: a2962c47-cebff70000021564-a9-5ceea27fb32e
Received: from copdcexc34.cable.comcast.com (copdcmhoutvip.cable.comcast.com [96.114.156.147]) (using TLS with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (Client did not present a certificate) by copdcmhout01.cable.comcast.com (SMTP Gateway) with SMTP id 9C.C8.05476.F72AEEC5; Wed, 29 May 2019 09:17:19 -0600 (MDT)
Received: from COPDCEXC37.cable.comcast.com (147.191.125.136) by copdcexc34.cable.comcast.com (147.191.125.133) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256_P256) id 15.1.1713.5; Wed, 29 May 2019 11:17:27 -0400
Received: from COPDCEXC37.cable.comcast.com ([fe80::3aea:a7ff:fe36:8a94]) by COPDCEXC37.cable.comcast.com ([fe80::3aea:a7ff:fe36:8a94%15]) with mapi id 15.01.1713.004; Wed, 29 May 2019 11:17:27 -0400
From: "Livingood, Jason" <Jason_Livingood@comcast.com>
To: Vittorio Bertola <vittorio.bertola@open-xchange.com>, Melinda Shore <melinda.shore@nomountain.net>
CC: "add@ietf.org" <add@ietf.org>
Thread-Topic: [Add] [EXTERNAL] Re: Browser Administrative Authority
Thread-Index: AQHVFG55wa3Igz/1AE+Y9kIyvAMxaqaCOmKA
Date: Wed, 29 May 2019 15:17:27 +0000
Message-ID: <FC129D4E-87EE-4BDA-A817-642726FDF6D3@cable.comcast.com>
References: <182C9119-59F9-43FA-B116-4D45649B74B5@nbcuni.com> <410f4e4d-aee0-d679-b454-6576de90b21a@nomountain.net> <76EF5603-618C-4A73-A4F9-7489B73B0757@nbcuni.com> <9ad7aa89-d751-e4c6-dede-e9c22faf6d20@nomountain.net> <525969024.22086.1558949269703@appsuite-gw1.open-xchange.com>
In-Reply-To: <525969024.22086.1558949269703@appsuite-gw1.open-xchange.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/10.19.0.190512
x-originating-ip: [68.87.29.9]
Content-Type: text/plain; charset="utf-8"
Content-ID: <7BBBCD8E5F7E634686AEA95197A9EF75@comcast.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-CFilter-Loop: Forward
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFtrEKsWRmVeSWpSXmKPExsWSUDRnsm79oncxBuvuWFn8P72OzeL9oiWM Fq9O7mR3YPZYsuQnk8e7OVPZPWY9nsgewBzVwGhTklGUmljikpqWmlecaselgAFsklLT8otS XROLciqDUnNSE7ErA6lMSc3JLEst0sdqjD5WcxK6mDLe3l/AUrCHo6Ll7nPGBsYFHF2MnBwS AiYSDw90MHYxcnEICRxhkjiysYsJwmlhkujfs4gdwjnNKDHrxz92kBY2ATOJuwuvMIPYIgIZ Em+mt7KB2MwCihIvp/wAqxEWcJI4d2UxI0SNs8SUsytZIGwjiXtnVwP1cnCwCKhK3P8hDRLm FXCR6N+9jBli10ImibUfToH1cgp4SVy7dJcJxGYUEJP4fmoNE8QucYlbT+YzQbwgILFkz3lm CFtU4uXjf6wgtqiAvsSP7TfZIOJyEst+3gHbyyygKbF+lz7EGCuJc5tgRipKTOl+yA5xj6DE yZlPWCBaxSUOH9nBOoFRchaSzbMQJs1CMmkWkkmzkExawMi6ipHX0MxIz9DUQM/ERM/ccBMj MCUtmqbjvoPxw/nYQ4wCHIxKPLyabe9ihFgTy4orcw8xSnAwK4nw2k55EyPEm5JYWZValB9f VJqTWnyIUZqDRUmcl2nlsxghgfTEktTs1NSC1CKYLBMHp1QDo50mc8EH739fnhifsxbQLVdt +cxonek2l/lvhtGmf9E9qxccmD7V99Ehv4g37csuPF28/JXcrGj5Z1snKc8vi73u8ORV9vF1 FW9/PmAT+BH5OeZeQo07g+yBpY+u2ZRMfzT5x8+Q2uQf1d8KH/x4vuDoa+WZW5N/qp8WkTvE Uevg9WDmrd7ju2cosRRnJBpqMRcVJwIAzc3s20UDAAA=
Archived-At: <https://mailarchive.ietf.org/arch/msg/add/RdHH6z-7Zc3y4lt-SugQZICqtA4>
Subject: Re: [Add] [EXTERNAL] Re: Browser Administrative Authority
X-BeenThere: add@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Applications Doing DNS <add.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/add>, <mailto:add-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/add/>
List-Post: <mailto:add@ietf.org>
List-Help: <mailto:add-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/add>, <mailto:add-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 29 May 2019 15:17:32 -0000

    > Il 25 maggio 2019 21:17 Melinda Shore <melinda.shore@nomountain.net> ha scritto:
    > 
    > But, I think the broader problem is that ISPs are not running
    > recursives that use encrypted transport, and because they're not
    > other folks are stepping up/in

I am skeptical of this. In the grand scheme of things DoH was standardized rather quickly. It takes time to be implemented in a variety of systems, and this is starting to happen now. I think rather that in this case the other folks took pre-emptive action, and this is the source of some of the tension here. In any case, the open source and commercial DNS software platforms are now adding support for DoH and DoT, which is the enabler for ISPs beginning technical trials (and eventual deployment). 

JL