Re: [Add] draft-ietf-add-resolver-info-09

mohamed.boucadair@orange.com Wed, 21 February 2024 07:37 UTC

Return-Path: <mohamed.boucadair@orange.com>
X-Original-To: add@ietfa.amsl.com
Delivered-To: add@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 09901C14F604 for <add@ietfa.amsl.com>; Tue, 20 Feb 2024 23:37:36 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.104
X-Spam-Level:
X-Spam-Status: No, score=-2.104 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, UNPARSEABLE_RELAY=0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=orange.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id JR8uXXp6I_e6 for <add@ietfa.amsl.com>; Tue, 20 Feb 2024 23:37:32 -0800 (PST)
Received: from smtp-out.orange.com (smtp-out.orange.com [80.12.210.123]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C3CB0C14F5EC for <add@ietf.org>; Tue, 20 Feb 2024 23:37:31 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=orange.com; i=@orange.com; q=dns/txt; s=orange002; t=1708501052; x=1740037052; h=to:cc:subject:date:message-id:references:in-reply-to: mime-version:content-transfer-encoding:from; bh=651+HvI491E/iGCETBMeIhoQgtiYRlJhtRk1u03erW0=; b=kE7mGs+sZvc+oylS0CcZFsZTQ550HqDoCM5vgNe87XpRONADNeEwRIDX nVr0nqghXURkbLXH6WKnNhDYJKu4EB3sR3omeDazwwtDn5Te9Bmfoc+FI Ye1oWhwfJZqYT2yHdn/Xtv33RK4U2bGPznMFOPMguCN0WYDgquqApgD7T fdqYj6VJOcGq81eE68ojZWQL5apLU8NG3GFnxXHqogfmVwQaR8U57Ee4P CVM6jyi1sfuLvIVa94tifdTtXoD6pxQMbrOK/bdcYmV+jfr/7zH67nMim lD32QedXnTpuGBMul4UGrL2wjeVY1LdYbJjZh4mDA+NUwrpEyBfQQAPlk A==;
Received: from unknown (HELO opfedv1rlp0d.nor.fr.ftgroup) ([x.x.x.x]) by smtp-out.orange.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 21 Feb 2024 08:37:29 +0100
Received: from unknown (HELO opzinddimail7.si.fr.intraorange) ([x.x.x.x]) by opfedv1rlp0d.nor.fr.ftgroup with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 21 Feb 2024 08:37:29 +0100
Received: from opzinddimail7.si.fr.intraorange (unknown [127.0.0.1]) by DDEI (Postfix) with SMTP id F006322E1F2 for <add@ietf.org>; Wed, 21 Feb 2024 08:37:28 +0100 (CET)
Received: from opzinddimail7.si.fr.intraorange (unknown [127.0.0.1]) by DDEI (Postfix) with ESMTP id AB65922BBD0 for <add@ietf.org>; Wed, 21 Feb 2024 08:37:01 +0100 (CET)
Received: from smtp-out365.orange.com (unknown [x.x.x.x]) by opzinddimail7.si.fr.intraorange (Postfix) with ESMTPS for <add@ietf.org>; Wed, 21 Feb 2024 08:37:01 +0100 (CET)
Received: from mail-am0eur02lp2233.outbound.protection.outlook.com (HELO EUR02-AM0-obe.outbound.protection.outlook.com) ([104.47.11.233]) by smtp-out365.orange.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 21 Feb 2024 08:37:02 +0100
Received: from DU2PR02MB10160.eurprd02.prod.outlook.com (2603:10a6:10:49b::6) by PA4PR02MB7166.eurprd02.prod.outlook.com (2603:10a6:102:108::12) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7292.39; Wed, 21 Feb 2024 07:37:00 +0000
Received: from DU2PR02MB10160.eurprd02.prod.outlook.com ([fe80::18a0:3679:a134:1d02]) by DU2PR02MB10160.eurprd02.prod.outlook.com ([fe80::18a0:3679:a134:1d02%6]) with mapi id 15.20.7292.036; Wed, 21 Feb 2024 07:37:00 +0000
From: mohamed.boucadair@orange.com
X-TM-AS-ERS: 10.218.35.125-127.5.254.253
X-TM-AS-SMTP: 1.0 c210cC1vdXQzNjUub3JhbmdlLmNvbQ== bW9oYW1lZC5ib3VjYWRhaXJAb 3JhbmdlLmNvbQ==
X-DDEI-TLS-USAGE: Used
Authentication-Results: smtp-out365.orange.com; dkim=none (message not signed) header.i=none; spf=Fail smtp.mailfrom=mohamed.boucadair@orange.com; spf=Pass smtp.helo=postmaster@EUR02-AM0-obe.outbound.protection.outlook.com
Received-SPF: Fail (smtp-in365b.orange.com: domain of mohamed.boucadair@orange.com does not designate 104.47.11.233 as permitted sender) identity=mailfrom; client-ip=104.47.11.233; receiver=smtp-in365b.orange.com; envelope-from="mohamed.boucadair@orange.com"; x-sender="mohamed.boucadair@orange.com"; x-conformance=spf_only; x-record-type="v=spf1"; x-record-text="v=spf1 include:spfa.orange.com include:spfb.orange.com include:spfc.orange.com include:spfd.orange.com include:spfe.orange.com include:spff.orange.com include:spf6a.orange.com include:spffed-ip.orange.com include:spffed-mm.orange.com -all"
Received-SPF: Pass (smtp-in365b.orange.com: domain of postmaster@EUR02-AM0-obe.outbound.protection.outlook.com designates 104.47.11.233 as permitted sender) identity=helo; client-ip=104.47.11.233; receiver=smtp-in365b.orange.com; envelope-from="mohamed.boucadair@orange.com"; x-sender="postmaster@EUR02-AM0-obe.outbound.protection.outlook.com"; x-conformance=spf_only; x-record-type="v=spf1"; x-record-text="v=spf1 ip4:40.92.0.0/15 ip4:40.107.0.0/16 ip4:52.100.0.0/14 ip4:104.47.0.0/17 ip6:2a01:111:f400::/48 ip6:2a01:111:f403::/49 ip6:2a01:111:f403:8000::/51 ip6:2a01:111:f403:c000::/51 ip6:2a01:111:f403:f000::/52 -all"
IronPort-Data: A9a23:kv7lQa215y8Sl342MPbD5bV2kn2cJEfYwER7XKvMYLTBsI5bpzZVm DQdXGvXPP3cMWGkf4ogad6+8EsFvJOGydQ1SVNqqSg9HnlHl5HIVI+TRqvS04J+DSFhoGZPt Zh2hgzodZhsJpPkjk7xdOKn9BGQ7InQLpLkEunIJyttcgFtTSYlmHpLlvUw6mJSqYDR7zil5 5Wq/aUzBHf/g2QoajhOsvrawP9SlK+aVA0w7wVWic9j7Ae2e0k9VPo3Oay3Jn3kdYhYdsbSq zHrlezREsvxpn/BO/v9+lrJWhRiro36ZGBivkFrt52K2XCukMCQPpETb5LwYW8P49mAcksYJ N9l7fRcQi9xVkHAdXh0vxRwS0lD0aN6FLDvPiXvgODQ6Q79WDjG0dM3FnNtDKYH07MiaY1O3 aRwxDElQy2537jz6ZfjD+5mi4IkMdXhO54Ztjd41zbFAP06QJfFBaLX+dtf2zR2jcdLdRrcT 5NBNXwzM1KZOlsVYQx/5JEWxI9EglH6dD1RrV+Z46Aw/mPawAVwypDqKtPTddHMTsJQ9qqdj jiZrzqoWElKXDCZ4WDd6DWWhu/IpC3Af94UHfrgx/13rULGkwT/DzVNDgHn/pFVkHWWXttFK EU8+zEl668o+ySDTd77UwG5ulaLuxcdX5xbFOhSwAiBxoLV7hqXQG8eQVZ8hMcOscY3QXkj0 weEgsmxXzh36ufOEjSa66ueqi60NW4NN2geaCQYTAwDpd7+vIU0iRGJRdFmeEKosjHrMS6tk wGm7w59vJ5Qp9wtjr+JpmHsnBv58/AlUTUJzgnQW2uk6CZwa4ike5Gk5DDnARBofNfxor6p7 ClspiSO0N3iG61hgwSrZI0w8FyB4v+ENHjVhAZiAoN5rTC1oST4JsZX/S10I1pvPoAcYzj1b UTPuARXophOIH+taqwxaIW0YyjL8UQCPYW9Phw3RoMVCnSUSONh1H81DaJ39z6x+HXAaYllZ f+mnT+EVB7285hPwjusXPs62rQ23C04zm67bcmkl0T7jOHOOyXPE+pt3L6yggYRvfvsTOL9o o43Cid2404GC7eWjtT/rdBMcQtadShT6W7e8pUGKLDYSuaZJI3RI6SKm+9+E2CUt6FUnf3P5 XazRgdTz0Dn7UAr2i3bAk2PnIjHBM4lxVpiZXJEFQ/xhxALP9zzhI9BLMFfVed8q4ReIQtcF KRtlzOoWagUFVwqOl01MfHAkWCVXEn21FPUYXH+PlDSvfdIHmT0xzMtRSO3nAFmM8Z9nZJWT 2GIvu8afXYCe+imJOvrUqr1inqU5T0aku80WFbUKN5Ofkmq6JJtNyH6kv4wJYcLNAnHwTyZk Q2RBH/0YMHT9pQt/oChab+s9u+U/ylWRiK23FU3KZ6xLyDc8WflyohFOApNVS6IT3v6oc1Oe s0Jp8zB3CU7oWt3
IronPort-HdrOrdr: A9a23:VOcgl6McaOZEEsBcT0D155DYdb4zR+YMi2TDiHoddfUFSKalfp 6V98jzjSWE8Ar4WBkb+exoS5PwOk80kqQFqrX5XI3SFDUO11HYSL2KgbGN/9SkIVyGygc/79 YrT0EdMqyWMbESt6+TjGaF+pQbsb+6GcuT9ITjJgJWPGRXgtZbnmVE42igc3FedU1jP94UBZ Cc7s1Iq36LYnIMdPm2AXEDQqzqu8DLvIiOW29LOzcXrC21yR+44r/zFBaVmj0EVSlU/Lsk+W /Z1yTk+6SYte2hwBO07R6d030Woqqu9jJwPr3NtiEnEESutu9uXvUiZ1S2hkF1nAho0idurD CDmWZlAy050QKqQoj8m2qR5+Cn6kdi15aq8y7mvZPuzPaJOA4SGo5Pg5lUfQDe7FdltNZg0L hT12bcrJZPCwjc9R6NkOQgeisa43Zcm0BS5dI7njhaS88TebVRpYsQ8AdcF4oBBjvz7MQiHP N1BM/R6f5KeRfCBkqp91VH0ZipRDA+Dx2GSk8Ntoic1CVXhmlwyw8dyNYElnkN+ZohQ91P5v jCMK5viLZSJ/VmG55VFaMEW4+6G2bNSRXDPCabJknmDrgOPzbXp5v+8NwOlZOXkVwzvegPcb j6ISNlXDQJCjzT4OW1rex2ziw=
X-Talos-CUID: 9a23:2aTHL2D8ZifpUhj6EzY6pH84WeZmSVae5mX2elWKUldCV5TAHA==
X-Talos-MUID: 9a23:2QyklwuZYlZNbzYfW82n3ml4c/1o46OXBnsqzZMP/JG1NjFdJGLI
X-IronPort-AV: E=Sophos;i="6.06,175,1705359600"; d="scan'208";a="27869208"
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=egmwulostuluuxlcd12hiwN3flqFUozLe6ZrbDXC4l+zE7ggVHe7I5IYQKdqxAhNs8xfJ/r0B2wz7v/eZnaG9IIPHENU5X3xQR5xXOeS9PftC9tRiZnTAPHFcx1nPlhX7DgIbHBNcuaO9pfvdHECj+QPXG/x4W4+fR0uSIRY5oYU2HeTw8gUAFSiLadHd3+RlDKp226gRdOhjx6VG82Z8KLRpgLoWvHmnFC6yeOm5ApW1xAtRRasu5hu3QBOMeEr94mO1g052xp9YTylcrgKpEFKCb+4HsQuUfnSoIT7DaH5vAJXF6uheK4QG89nIM33Y6KljB3ebHbtgoAys2UtXA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=1d584LaR1RY+hGlcHjOF9P2eCYooryUUEAh+P2TnghU=; b=l3tmQGzSpt+zsr/DJMF2oINoV7oBQMYmVyUvnH8fOs4j+IHOMnvXX+IWveyheoWMVV/2KDtrWYNlp7oVxhoX8qz4TW7WEmmFq9DriSvo7A+xMzui2azJFfI4yan3P5vyeMMFULFjjWU97Rlj0nmx5CDDX3DqtlWdStsBm9fsHisnApVudl7oLn5YjltJo+PlIrSiVXrWnbMfNQjRkkTddp2jTDxLQ1xtFx8WVA70UDNRCjngFK+6mnmDtnCssirACWPQO95AZ8RZYrbd7+aevcFtBZU3eaDmbVgEPU81jmUWsro3BU/v2ncQuBpmih1Xn1jh2WrX/RMEZED7vk//ug==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=orange.com; dmarc=pass action=none header.from=orange.com; dkim=pass header.d=orange.com; arc=none
To: Mark Andrews <marka@isc.org>
CC: tirumal reddy <kondtir@gmail.com>, "add@ietf.org" <add@ietf.org>
Thread-Topic: [Add] draft-ietf-add-resolver-info-09
Thread-Index: AQHaZDM/jOf3XMF3YEmk7Ls89Hu85LET91kAgABxY5A=
Date: Wed, 21 Feb 2024 07:37:00 +0000
Message-ID: <DU2PR02MB1016058A16B81E9F322E087E288572@DU2PR02MB10160.eurprd02.prod.outlook.com>
References: <20240220193023.t8iYjP8Z@steffen%sdaoden.eu> <1645FF35-C586-4580-8E71-7EFD5712241A@isc.org>
In-Reply-To: <1645FF35-C586-4580-8E71-7EFD5712241A@isc.org>
Accept-Language: fr-FR, en-US
Content-Language: fr-FR
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_f47c794b-e3ab-43f0-9e0f-29fc3e503192_Enabled=true;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: DU2PR02MB10160:EE_|PA4PR02MB7166:EE_
x-ms-office365-filtering-correlation-id: e2e47bf9-f289-4d37-c2e7-08dc32afe3cd
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DU2PR02MB10160.eurprd02.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230031)(230273577357003)(38070700009); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="utf-8"
MIME-Version: 1.0
X-OriginatorOrg: orange.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DU2PR02MB10160.eurprd02.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: e2e47bf9-f289-4d37-c2e7-08dc32afe3cd
X-MS-Exchange-CrossTenant-originalarrivaltime: 21 Feb 2024 07:37:00.2004 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 90c7a20a-f34b-40bf-bc48-b9253b6f5d20
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: WfbAOyYkH9OlYBL74HhdGHO+8pVd68MwKDDkng9NQkLcqaueCqDnQDUqBiU1mI96FU6lH/QnxFNHKNQScUtsrBDglh33vuDRZI+Zqc+jQFk=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: PA4PR02MB7166
X-TM-AS-ERS: 10.218.35.125-127.5.254.253
X-TM-AS-SMTP: 1.0 c210cC1vdXQzNjUub3JhbmdlLmNvbQ== bW9oYW1lZC5ib3VjYWRhaXJAb 3JhbmdlLmNvbQ==
X-TMASE-Version: DDEI-5.1-9.0.1002-28204.005
X-TMASE-Result: 10--36.891200-10.000000
X-TMASE-MatchedRID: 0+daXaNUWRX/9O/B1c/Qy9+pUF0HsjxRkYC3rjkUXRKZVnrV0ZFsVYRM yN/ppM4nmC+wH+KoDco8S9lzU4VSlEkkO4zqprNOGXGu0jdPFGQcLpvanlxXmuchHA04zz3zGHK lCCPBaNcMJsU18KaxI4jbBsTWQL9da+OD8tzTcL8AOAItanHFj67YaZ2V2aJQ1YzbHoRn9L2LA5 hUBKtGy/SObKICezB6iG53ZWCOciJtH8sgYKrfjgw85kvZfX2K2FA7wK9mP9eyZb9Lf/D7g+zHN VsaiyNE0yL8bDy3qcAuokeveKrYVgmMI2iXE6lJ4aN9Pi1E3hd+S5m2/8VLmksjLog9thYXQiMi ngSlKoL1ggt3LFTFgGf/xGAUUlH3wcLaPlgzTvnvUvp/07kH5vj4/bP3ORM3nIbMd08UU8djB2a NYp9TBpxWn6dtA5GQvQHD6UmkpxBVkoiM+hC+mdQZ0Hylul0ykg40k3K8nNRFms6YEs23Dy1sQG cqD7UtC0RCXd9kb3LtLKwyDmROAaBwZskb5qvyTdXSSx0pfOxtoy7EwDMTdZUGdWQAe7MwFhS+8 NHTWqIvcv4jhXl4I2fgGg5eA3EgCbm0451GVI07lKkz03w061xjaHjE07oVpXe29SDbH5OcOyyg 3Ong9OLzNWBegCW2XWqJYTxN2ANfMDNvhnsk69IFVVzYGjNKWQy9YC5qGvzKU1cWyI3gWn+NTaI Mjjw/vECLuM+h4RB+3BndfXUhXQ==
X-TMASE-SNAP-Result: 1.821001.0001-0-1-22:0,33:0,34:0-0
X-TMASE-INERTIA: 0-0;;;;
X-TMASE-XGENCLOUD: de0d0090-681d-4530-91f8-fe92b44a0fd9-0-0-200-0
Content-Transfer-Encoding: base64
Archived-At: <https://mailarchive.ietf.org/arch/msg/add/fBqd6RszVtmhFrWK7zK8E4Ip3Wg>
Subject: Re: [Add] draft-ietf-add-resolver-info-09
X-BeenThere: add@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Applications Doing DNS <add.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/add>, <mailto:add-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/add/>
List-Post: <mailto:add@ietf.org>
List-Help: <mailto:add-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/add>, <mailto:add-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 21 Feb 2024 07:37:36 -0000

Hi Mark, all, 

We think this is fair. Thanks. 

We created a PR to fix this: https://github.com/boucadair/add-resolver-information/pull/19/files.

Cheers,
Tiru & Med

> -----Message d'origine-----
> De : Add <add-bounces@ietf.org> De la part de Mark Andrews
> Envoyé : mercredi 21 février 2024 01:50
> À : Steffen Nurpmeso <steffen@sdaoden.eu>
> Cc : tirumal reddy <kondtir@gmail.com>; add@ietf.org
> Objet : Re: [Add] draft-ietf-add-resolver-info-09
> 
> If a recursive server passes through a response with AA=1 it is
> broken. If a recursive  server forwards a query with RD=0 it is
> broken.  If a “recursive server” is just forwarding queries and
> responses the attacker will just put the response in the authority
> section.  The change of section provides no security. It doesn’t
> prevent problems. It is just change for changes sake.
> 
> --
> Mark Andrews
> 
> > On 21 Feb 2024, at 06:30, Steffen Nurpmeso <steffen@sdaoden.eu>
> wrote:
> >
> > tirumal reddy wrote in
> > <CAFpG3gd5GwSAoOs3SX2xWZyKVR7F5y-
> y1VxxbTmfooC4AWo5Mw@mail.gmail.com>:
> > |On Thu, 15 Feb 2024 at 06:02, Mark Andrews <marka@isc.org> wrote:
> > |> Why is it necessary to change the standard processing of queries
> > |> for RESINFO when we already have a signal (AA=1) about whether
> the
> > |> answer is coming from elsewhere or not ?
> > |
> > |It is introduced to handle a scenario where SUDN is used to
> discover
> > |the encrypted resolver, and if the discovered resolver does not
> > |support RESINFO, it will forward the query upstream. An attacker
> > |might provide a RESINFO response with AA=1. The proposed mechanism
> > |aims to help the client identify whether the response is coming
> from
> > |the discovered encrypted resolver.
> >
> > By the way i am really not worth being noted for anything
> > acknowledgeable regarding the work of this WG.  At all.
> > If you have another iteration of the document, i would prefer if you
> > would simply scratch my name from your work.
> > It is solely your work, for sure.
> > And the above is possibly very smart: my DNS work was two decades
> ago,
> > and i could not even tell whether i have ever seen authority section
> > entries being passed through or not.
> >
> > My main topics are simplicity so small teams can still exist
> > competetively as was true over two decades ago (ie, with knowing the
> > entire picture, not by delegating to "trusted" external modules in
> > uncounted numbers), when there were <3000 RFCs.
> >
> > As such i very much appreciated RFC 8499, but i alone from my
> > superficial out-of-interest reading have 17 DNS-related RFCs added
> > locally since then, plus the draft of yours and whatever else from
> > this WG.
> >
> > And a different way to get the TLS trust (or, rather, use existing
> > ways of various kind eg rpki, ikev2, or simply public keys as is
> done
> > by DKIM (certificates are a bit larger, but with the TCP that is
> more
> > and more needed per se, or QUIC; or even the permanent HTTP proxying
> > of everything, that is "no problem")) away from CA pools, to DNS/TLS
> +
> > DNSSEC zone records.  Thank you for that, too!
> >
> > Ciao, and greetings from Germany,
> >
> > --steffen
> > |
> > |Der Kragenbaer,                The moon bear,
> > |der holt sich munter           he cheerfully and one by one
> > |einen nach dem anderen runter  wa.ks himself off (By Robert
> > |Gernhardt)
> 
> --
> Add mailing list
> Add@ietf.org
> https://eur03.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.
> ietf.org%2Fmailman%2Flistinfo%2Fadd&data=05%7C02%7Cmohamed.boucadair%4
> 0orange.com%7C3a00adf00f6c4a88f66d08dc32770e24%7C90c7a20af34b40bfbc48b
> 9253b6f5d20%7C0%7C0%7C638440734117558876%7CUnknown%7CTWFpbGZsb3d8eyJWI
> joiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C0%7C%7
> C%7C&sdata=GUI2%2FfrtBz%2FtYaA8ZmAGjR2jzb8mcp%2BmewuFjMiI3CE%3D&reserv
> ed=0
____________________________________________________________________________________________________________
Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc
pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler
a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration,
Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci.

This message and its attachments may contain confidential or privileged information that may be protected by law;
they should not be distributed, used or copied without authorisation.
If you have received this email in error, please notify the sender and delete this message and its attachments.
As emails may be altered, Orange is not liable for messages that have been modified, changed or falsified.
Thank you.