Re: [Add] AD review of draft-ietf-add-dnr-08

"Eric Vyncke (evyncke)" <evyncke@cisco.com> Fri, 24 June 2022 08:57 UTC

Return-Path: <evyncke@cisco.com>
X-Original-To: add@ietfa.amsl.com
Delivered-To: add@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 80088C15BED3 for <add@ietfa.amsl.com>; Fri, 24 Jun 2022 01:57:15 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -9.607
X-Spam-Level:
X-Spam-Status: No, score=-9.607 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com header.b=TsYU2Q9/; dkim=pass (1024-bit key) header.d=cisco.onmicrosoft.com header.b=0tfkn+gn
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ox1p86yDeqYC for <add@ietfa.amsl.com>; Fri, 24 Jun 2022 01:57:11 -0700 (PDT)
Received: from alln-iport-3.cisco.com (alln-iport-3.cisco.com [173.37.142.90]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 2026EC15BE98 for <add@ietf.org>; Fri, 24 Jun 2022 01:57:11 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=56901; q=dns/txt; s=iport; t=1656061031; x=1657270631; h=from:to:subject:date:message-id:references:in-reply-to: mime-version; bh=IkUxl71/D0VfKqpRkI1RprTTTkhFOSba1DOoYmyKBqY=; b=TsYU2Q9/XcAqWUVoZZJf2Wkwzn+Zq0pxa1nDr/tBvcMg3NxZ2Cxre7vn aN0yt931QChobCbXirC9PF4Z0J9t3RSAI9+HTwjdymVzeLsiGAFROwIgI EgjUYA+gUq0ona9fs9Nu+orKmjp8lpFKdI4ntPIxb8z6HotrgCthGLt+y A=;
X-IPAS-Result: A0AYAABFe7Vi/40NJK1aGwEBAQEBAQEBBQEBARIBAQEDAwEBAYF7BgEBAQsBgSAxUgd4Alk6RIROg0wDhFJfhQpdgiUDkE+KdYEsFIERA1QLAQEBDQEBNwsEAQGFAwIWhTQCJTQJDgECBAEBAQEDAgMBAQEBAQEDAQEFAQEBAgEHBIEJE4U7AQclDYZCAQEBAQMSEQoTAQEpDw8CAQgRAwECIQEJAgICMB0IAgQBEiKCWwGCDlcDMAMBDp8ZAYE/AoofeoExgQGCCAEBBgQEgTcBFUFHgjgYgjgDBoE9AYMVgwpeSgEBgxeDGXsIHxyBSUSBFAEnHIJnPoJiAQECAYEoARIBBwI4BgeDKTeCLoFsCotWhCOHLQc4AxotLxKBIG4BCAYGBwoFMAYCDBgUBAITEk0GHAISBQcKBhUOFBwSEhcMDwMSAxEBBwIJEggVKwgDAgMIAwIDKwIDFgkHCgMdCAocEhAUAgQRHgsIAxkeLAkCBA4DQAgLCgMRBAMTGAkWCBAEBgMILw0nCwMFDw0BBgMGAgUFAQMgAxQDBSQHAyEPJg0NBBsHHQMDBSUDAgIbBwICAwIGFQYCAhhWLg0IBAgEGB8kDwUCBy8FBC8CHgQFBhEIAhYCBgQFAgQEFgIQCAIIJxcHDQYYGxkBBVkQCSEWBikKBgUGFgMjSCYFCjsPKDQ2PCMJHxsKgRssCSIYAwQEAwIGHgMDJQISFAYiAR2aO2sGAQEeRAQUExwOAg1DKwhACAIIFhcCDygCOgORdRQJCwKDS4oChAmKBJFagTAKg06LIJR1BC2DdYxDkTWGd5ZwII0QlCcpBAQahHACBAIEBQIOAQEGgWE8aXBwFTsqAYIJAQEyURkPgTaGSIYiDBaDUIUUhUp1AgE4AgYBCgEBAwmMOy2CGQEB
IronPort-PHdr: A9a23:Q1Wn0hQHYpWWBI6sxcU/YnX5sNpso7vLVj580XJvo75Nc6H2+ZPkM QSf4Ph2l1bGUM3d7O4MkOvZta3sGAliqZaMuXwPatpAAhkCj8hFkwkpGsXQD0r9IbbjZDA7G 8IXUlhj8jm7PEFZFdy4aUfVpyi57CUZHVP0Mg8mTtk=
IronPort-Data: A9a23:SJR5VK+KsAZC1I/SNosDDrUDMnyTJUtcMsCJ2f8bNWPcYEJGY0x3m DFMXG2BMv/camD3c9EjYI+ypx8EuZSHz9JqQQs6/ipEQiMRo6IpJzg2wmQcns+2BpeeJK6yx 5xGMrEsFOhtEjmG4E/F3oHJ9RFUzbuPSqf3FNnKMyVwQR4MYCo6gHqPocZh6mJTqYX/UlnlV e/a+ZWFYgf7gWIsawr41orawP9RlKWq0N8nlgRWicBj5Df2i3QTBZQDEqC9R1OQrl58R7PSq 07rldlVz0uBl/sfIorNfoXTLiXmdoXv0T2m0RK6bUQNbi9q/UTe2o5jXBYVhNw+Zz+hx7idw /0V3XC8pJtA0qDkwIwgvxdk/y5WEbdav5CZOSGFoNW6wXDXfEvF4vRrNRRjVWEY0r4f7WBm/ PgcLnUGaQqOwrLwy7OgQe4qjcMmRCXpFNpA4Tc7k3eAVrB/Hcmrr6bivbe02B89mNFIFvXTT 8EYcjFoKh/HZnWjP39HWchizbz42iKXnztw8kuLuIoms0XvlhF38L/hG/aWau6OWpAA9qqfj iecl4jjOTkTONC3yDeZ/DSrnOCntSb8WIsXGbH+/Pl3i1Sfz20JIBoMXF20rL+yjUvWZj5EA 0UQ/ixrpq8o+Qn7CNL8RBa/5nWDu3bwRuZtLgHz0ynVooK83upTLjFsouJpADD+iPILeA==
IronPort-HdrOrdr: A9a23:SkVjbK2TVF2bR5+Pq/WUowqjBQdyeYIsimQD101hICG9Lfb3qy n+ppsmPEHP5Ar5AEtQ5OxoS5PwPU80lKQFrbX5WI3CYOCIghrQEGgP1/qB/9SkIVyFygc/79 YuT0EdMqyJMbESt6+Ti2PUc6dC/DDEytHSuQ609QYIcegeUdAH0+4PMHf9LqQZfngiObMJUL 6nouZXrTupfnoaKu6hAGMeYuTFr9rX0Lr7fB8vHXccmUezpALtzIS/PwmT3x8YXT8K66wl63 L5nwvw4bjmm+2nyyXby3TY4/1t6ZrcI5p4dYyxY/ouW3fRYzWTFcFcsnq5zXQISdSUmRUXeR /30lAd1opImjXslyqO0GTQMkHboUgTAjnZuAalab+Jm72jeNr8YPAx3b6xOyGpmHbJsLxHod J2NyjyjesnMTrQ2Cv6/NTGTBdsiw69pmcji/caizhFXZIZc6I5l/1VwKp5KuZIIMvB0vFuLM B+SMXHoPpGe1KTaH7U+mFp3dy3R3w2WhOLWFILtMCZ2yVf2CkR9TpU+OUP2nMbsJ4tQZhN4O rJdqxuibFVV8cTKaZwHv0IT8e7AnHEBRjMLGWRK1L6E7xvAQOGl7fnpLEuoO26cp0By5U/3J zHTVNDrGY3P1njDMWftac7hCwlgF/NKggF5vsukqSR4IeMNoYDGRfzPGwTrw==
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-AV: E=Sophos;i="5.92,218,1650931200"; d="scan'208,217";a="892493843"
Received: from alln-core-8.cisco.com ([173.36.13.141]) by alln-iport-3.cisco.com with ESMTP/TLS/DHE-RSA-SEED-SHA; 24 Jun 2022 08:57:09 +0000
Received: from mail.cisco.com (xfe-aln-005.cisco.com [173.37.135.125]) by alln-core-8.cisco.com (8.15.2/8.15.2) with ESMTPS id 25O8v9SA028668 (version=TLSv1.2 cipher=AES256-SHA bits=256 verify=OK); Fri, 24 Jun 2022 08:57:09 GMT
Received: from xfe-aln-005.cisco.com (173.37.135.125) by xfe-aln-005.cisco.com (173.37.135.125) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.986.14; Fri, 24 Jun 2022 03:57:09 -0500
Received: from NAM12-BN8-obe.outbound.protection.outlook.com (173.37.151.57) by xfe-aln-005.cisco.com (173.37.135.125) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.986.14 via Frontend Transport; Fri, 24 Jun 2022 03:57:09 -0500
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=LbhO2ymYLZEw2+iSPrmE5rgM5pGkfNYGZaVPDvjlelc7DGXY9AiRBIgVdaOc/wfAZSCiwmkNJJ4nbawqPVzduZAeBKfA4M/hYT2e4xCzsuNYCZYr7QJtPsIiLKSaBs+hjwCUHzutWA43hm8PM/nN7d3WE6LZkWh9sGeJElucnqgErqQDcUIxa7ZVh5y9C8+cRqoFGtv/RDN+9ruCrZWZYPnyHQy2KMK4vqYScliu38r95At73jmgeBYm/nRP9WGBooEflzAJRoomu07G4W/dqoKaUfkli9WSNhubVXrobn37lG+CzVINmxYRW3zrRGRSE1Ck6nW1ssIwx42gh9Q7rw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=IkUxl71/D0VfKqpRkI1RprTTTkhFOSba1DOoYmyKBqY=; b=PRIZqbxiSDvtjFLwK0QYB1WAfFuzPY0RGS509pdvLlJk08l1jiBfQg5Xtpf5WR+Tl5w87SSHtjwZ4yNxkOGHfiVnfOGe0NE671StrZi1isHWqJHs5NfE1Q2DO5kC7TLB2JWnwMaFaJRM7j9IGfZuTERacnLCFUD7+MMj5x9WID89MCfs6uhqqG6wT3r+4FuQdIXv9gWUO65FozGPQSZOLck34c85pIWZAkY4UzSEmp1o1ypi8n617d0W94JWC2zpN8deu+PpWUyctAbfn95SSEZYrdiVru3/tos9EYaUfbKfyexl2hJyqcl+WBRiQUgetUvCoQmP2Obf2i2dVhTXMA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cisco.com; dmarc=pass action=none header.from=cisco.com; dkim=pass header.d=cisco.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.onmicrosoft.com; s=selector2-cisco-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=IkUxl71/D0VfKqpRkI1RprTTTkhFOSba1DOoYmyKBqY=; b=0tfkn+gnuYU8y9fF2Ew7ykGbRZnaO5JSCFgOsKfr2leInnmKtBv55i7KZ4K5nACm+ENJf9/f34U9yzcnJoxXSkG9dYAszZ6VCHE1FnWoXE0bnNrq0DYRquAvsK0rdn/NWTTowuGvG0FecwKobdyT76AgeGRMrqTCISCaPyRmP3Y=
Received: from PH0PR11MB4966.namprd11.prod.outlook.com (2603:10b6:510:42::21) by DM6PR11MB2588.namprd11.prod.outlook.com (2603:10b6:5:c6::18) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5353.15; Fri, 24 Jun 2022 08:57:06 +0000
Received: from PH0PR11MB4966.namprd11.prod.outlook.com ([fe80::3891:c0c9:3d21:bfe7]) by PH0PR11MB4966.namprd11.prod.outlook.com ([fe80::3891:c0c9:3d21:bfe7%6]) with mapi id 15.20.5373.017; Fri, 24 Jun 2022 08:57:06 +0000
From: "Eric Vyncke (evyncke)" <evyncke@cisco.com>
To: "mohamed.boucadair@orange.com" <mohamed.boucadair@orange.com>, "add@ietf.org" <add@ietf.org>
Thread-Topic: AD review of draft-ietf-add-dnr-08
Thread-Index: AQHYhs+io9y4HP8WnkCZ7FL+lvbjXK1cklyQgAHSTIA=
Date: Fri, 24 Jun 2022 08:57:06 +0000
Message-ID: <90FDC2D0-F7B5-491C-BFB8-BD18E27181B5@cisco.com>
References: <6513B2D7-1D0A-49B3-AAEB-3C17C2B7400A@cisco.com> <23893_1655977232_62B43510_23893_77_1_de1ff3cf3a8646848ef74e1edbf70fa3@orange.com>
In-Reply-To: <23893_1655977232_62B43510_23893_77_1_de1ff3cf3a8646848ef74e1edbf70fa3@orange.com>
Accept-Language: fr-BE, en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/16.62.22061100
msip_labels: MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Enabled=true; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SetDate=2022-06-23T07:08:14Z; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Method=Privileged; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Name=unrestricted_parent.2; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SiteId=90c7a20a-f34b-40bf-bc48-b9253b6f5d20; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ActionId=92db5f92-f689-4413-94d7-8bd9b3f3270e; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ContentBits=0
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=cisco.com;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 880d04b5-1b6c-4a27-0cdf-08da55bf83bd
x-ms-traffictypediagnostic: DM6PR11MB2588:EE_
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:PH0PR11MB4966.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230016)(4636009)(136003)(366004)(376002)(39860400002)(396003)(346002)(316002)(53546011)(8936002)(6512007)(83380400001)(122000001)(41300700001)(478600001)(6506007)(166002)(66574015)(110136005)(38100700002)(2616005)(186003)(36756003)(86362001)(38070700005)(66476007)(33656002)(5660300002)(8676002)(76116006)(66556008)(66946007)(66446008)(64756008)(91956017)(71200400001)(6486002)(966005)(2906002)(45980500001); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: ei6EyMSW8ra5lM8/JjgCZXNORZ+wmV+kzsmmG6q+FXoIE7CEEcYg3sIoKY1Op16izQeDUDQpnKQDOBi/rrB51nIWXzXeG4EJPo2fuVDr3lvloa1hyrT+BHifQZKaS6HpNnoKL8c1opLNPx78Oz+pA/Pue1djIOAeU/j+hlFLG0hlKr5YnhDFL72znP3FjHk1lF1SepErx6g1ErlYra8n4FkuRbbdXwC4TM+GN1iAyUXov3vPCFT52LbSL0hCn0HwXQpRq8crXbiEcSJqXAUAdCQTqQJ4eoFSUBnq9NvBeOJiv+Y2ywk7b+PPZWgEZWhHVvGoGVpVwwAP2uL5fP9cb4ZWZ2k/64zuhJCqPjT7ENPxYB3ITKYB2IWa4ZGa0o1n6sRUn7xiJY7A9WqvyQZ+DuTVN/noqbAc/jMrJiKXBf0e7t/2E2pYhTkNL3JGP5nfr7PMlvFyf99cEbzcFB+e4GBAzEGJQo41CbdjUAKtF609WQgatXI5zPr8oVRLqqVbcJL96Ddc4uNyqCEoavJut2I1NSdcw/D82qRbbLvYysU4zVKrN30rE4m/So3JvCvovi/1IpWIoNinfDcqg2qYB/QWKDyflcen79Ff4U9apHbBuB66bXqyaU7MaCBo1P5kqqGmJC5eHiidJgexz8t334KL1IH1SvL1pGM+cd6LVAdCLT3tTP5j1EyBYkXWB3RvFcu5Sf6DiRxw8pYlqOgTlyCkZgziWXxH9uxKDobb/eAbH5qK3xl34tXk/Kbk2i4TE2lq9LtoOd3zIqPldA06IfrUZFmIvKd8mBSXf9ce04btPce0PIBdw8bmWY+LVcgluSxQuSctrgk1d1PBE1ezhuftjQYBI/kAaMnKYwHpab9Wpm9/AmpDl2HXSxSmIoMsY5Gkmn7Q0jP6G4uF3tN0dEct+DmuVEoaPHeFuPo576ulF+tRklomaiN4RZAPpF3msZerKlXVUvZ1zqXxIOfgTYTTsUYDtA2hTz43ZAGjKD6rkk+KbCncBx96fftvydZI9e7fweH1QZJgQhcDTLjY3ok2qF/zkRc6MROCqMc1yT4Ydf5BHAdf3r1Wgl7yaPe/6ui534GRZOTedu7OXhP1euqFW2HAIAbX2x9F3tGFsF7eT0RDj39+Q97yBmCXYIkmZ0tFLBHn4eCMMdEOc7LblIFvBgCVgi1AmT5Pt0M5ocjt8G/N19ggGSTeYrlFVBHJFLdLDbu01oJdUi0QzyPHngPF2Pi7Lx5eYPuSqL2ERfwkFqQkDEz3mwY0Qiuy8YTN3Bw8+cFgwprV6Kf++zvzckYT6cdEsiHrScOnqJbxjEWkJ21gEk4EFebgdKS36jzvVKvqQ6I5FIyDSaDMz0C+0QXGmb8o3WJv30glJql+DwyMMxKDGtv/Kbyd5k140/AQ185oWnchIO+DUMI93I8QpI3Hl80vqTwYubEuesiwAE7sdxRN+gjYnUM3MKUzCaWfcu5Xx+Ge/67CYtv36Pl8QeZe95u7hHTijzV4yhAIpdSKhGDd4y3NNf/cyUwcGnIdrfkpjEjWZ3n71W+HDdSw/BjZaZfid7WNQWYIVZSz8s99kLynSCz0BJVkyX/h6d90zq+2/uovCZPEE8DezL9TJolUcTyJCYZhj8oDSLR/kI7i1LPaVvcWrFuHjzp7pMdE
Content-Type: multipart/alternative; boundary="_000_90FDC2D0F7B5491CBFB8BD18E27181B5ciscocom_"
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: PH0PR11MB4966.namprd11.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 880d04b5-1b6c-4a27-0cdf-08da55bf83bd
X-MS-Exchange-CrossTenant-originalarrivaltime: 24 Jun 2022 08:57:06.3509 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: WPN/2P3woxs2eZh1QDqn8txWDZJKNPfVNUQU9JBWnd8Hypo0qXy/ixq15+Lg593sX8/bPhe7+oblZdQZ+U6vEg==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM6PR11MB2588
X-OriginatorOrg: cisco.com
X-Outbound-SMTP-Client: 173.37.135.125, xfe-aln-005.cisco.com
X-Outbound-Node: alln-core-8.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/add/SFIpMWvnhzTkMDWKQkrl_jGMC6E>
Subject: Re: [Add] AD review of draft-ietf-add-dnr-08
X-BeenThere: add@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Applications Doing DNS <add.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/add>, <mailto:add-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/add/>
List-Post: <mailto:add@ietf.org>
List-Help: <mailto:add-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/add>, <mailto:add-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 24 Jun 2022 08:57:15 -0000

Hello Med,

Thank you for your reply and for some actions of yours. Please see below for EV>

Regards

-éric


From: "mohamed.boucadair@orange.com" <mohamed.boucadair@orange.com>
Date: Thursday, 23 June 2022 at 11:40
To: Eric Vyncke <evyncke@cisco.com>, "add@ietf.org" <add@ietf.org>
Subject: RE: AD review of draft-ietf-add-dnr-08

Hi Éric,

Thank you for the review.

Please see inline.

Cheers,
Med

De : Add <add-bounces@ietf.org> De la part de Eric Vyncke (evyncke)
Envoyé : jeudi 23 juin 2022 09:06
À : add@ietf.org
Objet : [Add] AD review of draft-ietf-add-dnr-08

# Éric Vyncke, INT AD, comments for draft-ietf-add-dnr-08
CC @evyncke

Thank you for the work put into this document.

As usual, as the responsible AD for the ADD WG, I have done an AD review before the IETF Last Call. Please find a MD-formatted review below. Before going further, I am requesting the authors to act/reply/comment on all the points below. The end goal is to ease the rest of the publication process.

Regards,

-éric

## COMMENT

### 6MAN review of the RA option

The document shepherd write-up is explicit about the DHC WG review but what about the 6MAN review of the RA options ? Suggest to be clear in the doc shepherd document about this point, even if only writing "6MAN WG was not consulted" (then I will make it clear for the IETF last call).

[Med] I confirm that we solicited 6man + reach out individuals to seek feedback on the RA part.

EV> This would be nice to add in the doc shepherd review. Anyway, I will keep this in my mind when starting the IETF last call.
EV> OTOH, I only see https://mailarchive.ietf.org/arch/msg/ipv6/qeSwxWBoPTOs0fzyaSBzUC2g-sc/ which was about a specific point of the DNR I-D and not about the full RA option.

### "DNS Server" could be ambiguous

The abstract, the introduction, and possibly other sections use "local DNS server" while I think that the authors' intent was rather "local recursive DNS server". If this is the case, then suggest changing the wording.

[Med] We are using the generic term “DNS server” on purpose as the options can also be used to discover forwarders. The subtleties between the various modes are covered in RFC8499. That’s why we have: “This document makes use of the terms defined in [RFC8499<https://datatracker.ietf.org/doc/html/rfc8499>].“

EV> I appreciate that forwarders are in scope. But RFC 8499 does not define « DNS server » so this reference does not help.
EV> Therefore, I strongly suggest using a wording such as « DNS server (i.e., recursive resolver or forwarder) » in the abstract and add some text in the introduction stating that « DNS server » covers both recursive resolver and forwarder.


### Section 3.1 flow

```
   In order to allow for PKIX-based authentication between a DNS client
   and an encrypted DNS server,
```
While the above text is correct, the reader has only the explanation later. Suggest to change the flow to ease the reader's task.

[Med] Can you please indicate the change you have in mind? Thanks.


### Section 3.1 ADN

"ADN" is not expanded at first use.

[Med] This was already expanded in the introduction.

EV> good point, I failed to spot it ;-)

### Section 3.1 Global IPv4 address

```
   This IP address can be a
   private IPv4 address, a link-local address, a Unique Local IPv6
   unicast Address (ULA), or a Global Unicast Address (GUA).
```
What about global IPv4 address ? The wording seems to indicate an exhaustive list while it is not. What about anycast ?

[Med] The text you quoted was in reference to a specific example: “For example, a router embedding a recursive server or a forwarder has to include one single IP address pointing to one of its LAN-facing interfaces”. For such a case, the LAN-facing address is typically a private IPv4 address. The case of public (which includes anycast) is covered by this text in Section 5.1:

==

Both private and

      public IPv4 addresses can be included in this field.
==

EV> I still find it slightly confusing though. Could you rephrase into “E.g., This IP address can be a ...”

### Section 3.1 round-robin

```
   If multiple IP addresses are to be returned in an Encrypted DNS
   option, these addresses are ordered in the preference for use by the
   client.
```
Should there be a recommendation somewhere for a round-robin to spread the load ?

[Med] We don’t include such aspects as that is more about selection than discovery.


### Section 3.1 RECOMMENDED vs. MUST vs. SHOULD

```
   At least the following service
   parameters are RECOMMENDED to be supported by a DNR implementation:
```
While "dohpath" is obviously applicable only to DoH, should the normative language be more than "RECOMMENDED", a "MUST" or "SHOULD" seems at the right level for "alpn" and "port" at least.

[Med] As you know, RECOMMENDED is equivalent to SHOULD. That’s said, we can’t use MUST for all the parameters because, for example, the support of ECH is not justified for the typical home case.

EV> what annoys me is that some parameters (alpn) are MUST and not only RECOMMENDED/SHOULD

Later in `returning an ADN only can be considered` suggest using a 'MAY'

[Med] This is about configuration/use, not implementation support.

Beware that these changes are important and will need to be run again through the WG during the IETF Last Call.

### Section 4.1 reference to dnsop-svcb ?

```
      Service Parameters (SvcParams) (variable length):  Specifies a set of
      service parameters that are encoded following the rules in
      Section 2.1 of [I-D.ietf-dnsop-svcb-https].  Service parameters
```
is it section 2.1 (zone file) or section 2.2 (wire format)?

[Med] I confirm: 2.1. Particularly, this part:

==

  SvcParams are a

   whitespace-separated list, with each SvcParam consisting of a

   SvcParamKey=SvcParamValue pair or a standalone SvcParamKey.
==

EV> I still have doubts, but I will trust the authors on this one

### Section 5.1 example

To be consistent with section 4.1, please also use a figure similar to figure 2 rather than the existing figure 5.

[Med] Added a new sentence to refer to the example in Figure 2 and removed figure 5.


### Section 5.1 address length

```
   Addr Length:  Indicates the length of included IPv4 addresses in
      octets.  It MUST be a multiple of 4 for ServiceMode.
```
Unsure what "for ServiceMode" has to do here... Should it be removed ?

[Med] Because in the ServiceMode, an IP address must be returned. We don’t have that constraint for the ADN-only mode (as no address is returned).

EV> ack, thanks

### Section 6.1 address length

```
   Addr Length:  Indicates the length of included IPv6 addresses in
      octets.  It MUST be a multiple of 16 for ServiceMode.
```
Unsure what "for ServiceMode" has to do here... Should it be removed ?
[Med] Idem as above.

### Section 6.2

What happens when multiple RAs are received ? Either from different routers or from the same router ?

[Med] That’s covered by this text:

==

In addition, the host

   follows the procedure described in Section 5.3.1 of [RFC8106]<https://datatracker.ietf.org/doc/html/rfc8106#section-5.3.1> with

   the formatting requirements in Section 6.1<https://datatracker.ietf.org/doc/html/draft-ietf-add-dnr#section-6.1> substituted for the length

   validation.
==


Section 5.3.1 of 8106 says the following:

==

   In the case where the DNS information of RDNSS and DNSSL can be

   obtained from multiple sources, such as RAs and DHCP, the IPv6 host

   SHOULD keep some DNS options from all sources.
==

EV> except that RFC 8106 only applies to the RDNSS RA option and not to the DNR RA options. So, it is required, IMHO, to repeat the text.

### Section 7.4 PSK

"pre-shared key", may I assume it is the WPA PSK ? Please be specific.

[Med] OK, updated the text to clarify this. Thanks.


### Section 7.4 station-to-station

If not mistaken (but I am far from being a IEEE 802.11 expert), the AP can be configured to prevent all station-to-station conversations, which will stop many of the above attacks. If confirmed, then suggest to mention it.

[Med] Will double check. Thanks.


### Section 8.3

"DNS Encrypted DNS Option" or "Encrypted DNS Option" ?

[Med] Fixed. Thanks.


_________________________________________________________________________________________________________________________



Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc

pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler

a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration,

Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci.



This message and its attachments may contain confidential or privileged information that may be protected by law;

they should not be distributed, used or copied without authorisation.

If you have received this email in error, please notify the sender and delete this message and its attachments.

As emails may be altered, Orange is not liable for messages that have been modified, changed or falsified.

Thank you.