Re: [Add] [Ext] Draft Posting: CNAME Discovery of Local DoH Resolvers

Ted Lemon <mellon@fugue.com> Wed, 01 July 2020 14:18 UTC

Return-Path: <mellon@fugue.com>
X-Original-To: add@ietfa.amsl.com
Delivered-To: add@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 89FC33A0BC9 for <add@ietfa.amsl.com>; Wed, 1 Jul 2020 07:18:56 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=fugue-com.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id F_2WbCSIehQP for <add@ietfa.amsl.com>; Wed, 1 Jul 2020 07:18:55 -0700 (PDT)
Received: from mail-qt1-x836.google.com (mail-qt1-x836.google.com [IPv6:2607:f8b0:4864:20::836]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 060A83A0BC7 for <add@ietf.org>; Wed, 1 Jul 2020 07:18:54 -0700 (PDT)
Received: by mail-qt1-x836.google.com with SMTP id z2so18515597qts.5 for <add@ietf.org>; Wed, 01 Jul 2020 07:18:54 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=fugue-com.20150623.gappssmtp.com; s=20150623; h=content-transfer-encoding:from:mime-version:subject:date:message-id :references:cc:in-reply-to:to; bh=lBuN1IC+0wcb9N6hOpAR+rMEFVOodCFNgyG/IXrTREc=; b=lA+QdfYvrgCQNlJqqJ1CJGGtio72FbtbaHX2enSzhLbn99krwVE6U1e+25GldePc1f DSu3/CvMVyMYpSz7Pbp2boQ2TmcDf+5JsW7wOs9aaUegSRPJDovQtG02L5SICmeXjKBQ M1bX8c4WaEPPxGnhUjjKHVCyKchElvoOv59YCVWLEKeUvv6/038ErGIulKEHI/3OyWyJ A2cHTZwKUvq7PstiM+iOzApS3yT/vSC/zNCnvFHHPToq43xQqdcyoPQ8R006KmGWnaV1 jjIk8EzaM268qAA4fHu3T3pr+doWhWVUcQEfEIiYfYoAWh0Eo0bJ8eO5gEu7731+yyTQ W5Hw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:content-transfer-encoding:from:mime-version :subject:date:message-id:references:cc:in-reply-to:to; bh=lBuN1IC+0wcb9N6hOpAR+rMEFVOodCFNgyG/IXrTREc=; b=kh/8d+kLG61v9adXBbZKuecJEp7XzOqrkKGhYuf3BTDymhHfOkbxFcAqhetKw/Zq93 rjmccf5VakdtA5TWDODO38x7scMqyky3zE/LkDr936FNZPp2ZQKfRHPWs4GcIu9c8WBN cIWjRD//e+4HvISwk4kL8ESRNUXTnmFYu5Z0K+AsucjNDuXW/cbZzU4VjZHihQ1icSnE m69VE16V9D/+yKDnNgLN2fVShe7qoampCueG+9I8w+c5veUQ0L78tPPjy9Jo2QOW2aH+ /pGsXTFnSQifO/nCNrpoHpC73w7m/UzpFugxQteYm+Sph3SAEC1Cq1SLCTflFa7Ei6ZA FfeA==
X-Gm-Message-State: AOAM530Gn40Aka98akPBjRegetXZY1DdB3ItpCqT22RKDBvWGL3IuFGe FiKCZr2KYuZHoLP4/4PFYlbuQzPJEv8=
X-Google-Smtp-Source: ABdhPJzqj+Dmp6rSU/lFrxzNb6McnJXnBibG58IOzDy6Ql2qcU+HhkggzeZktudO9vuem0sRgVYv4g==
X-Received: by 2002:ac8:1ac4:: with SMTP id h4mr27151222qtk.249.1593613133594; Wed, 01 Jul 2020 07:18:53 -0700 (PDT)
Received: from ?IPv6:2601:18b:300:36ee:f5b5:a81b:f23f:5f9d? ([2601:18b:300:36ee:f5b5:a81b:f23f:5f9d]) by smtp.gmail.com with ESMTPSA id x197sm5825256qka.74.2020.07.01.07.18.52 (version=TLS1_3 cipher=TLS_AES_128_GCM_SHA256 bits=128/128); Wed, 01 Jul 2020 07:18:52 -0700 (PDT)
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
From: Ted Lemon <mellon@fugue.com>
Mime-Version: 1.0 (1.0)
Date: Wed, 01 Jul 2020 10:18:51 -0400
Message-Id: <AC1FE98D-8F0E-44E9-98EF-8DD5FF7520D5@fugue.com>
References: <CAFpG3gdiidmjxoauBw56ZybRabB6JET1Nh5dzTLQq1k0ZAn6Uw@mail.gmail.com>
Cc: Paul Vixie <paul@redbarn.org>, ADD Mailing list <add@ietf.org>
In-Reply-To: <CAFpG3gdiidmjxoauBw56ZybRabB6JET1Nh5dzTLQq1k0ZAn6Uw@mail.gmail.com>
To: tirumal reddy <kondtir@gmail.com>
X-Mailer: iPhone Mail (18A5301v)
Archived-At: <https://mailarchive.ietf.org/arch/msg/add/eHwRxyaJ3AWRb6D0qIfherTY_oU>
Subject: Re: [Add] [Ext] Draft Posting: CNAME Discovery of Local DoH Resolvers
X-BeenThere: add@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Applications Doing DNS <add.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/add>, <mailto:add-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/add/>
List-Post: <mailto:add@ietf.org>
List-Help: <mailto:add-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/add>, <mailto:add-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 01 Jul 2020 14:18:57 -0000

On Jul 1, 2020, at 07:11, tirumal reddy <kondtir@gmail.com> wrote:
> Secure bootstrapping methods for IoT devices are discussed both inside (e.g., BRSKI) and outside of IETF (DPP, OCF, OMA).

Indeed, there is a lot of interesting work going on in this space. The idea that devices can’t be trusted is accepted by everybody except the people whose business models rely on snooping, and I expect the state of the art to improve continuously. 

That said, commissioning protocols are ways of making link security (e.g. 802.1x) more usable, and have nothing much to do with DHCP. They are generally one-time unless something goes wrong.