Re: [Add] Paul Wouters' Discuss on draft-ietf-add-dnr-11: (with DISCUSS)

Michael Richardson <mcr+ietf@sandelman.ca> Wed, 20 July 2022 20:21 UTC

Return-Path: <mcr@sandelman.ca>
X-Original-To: add@ietfa.amsl.com
Delivered-To: add@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1D166C159497; Wed, 20 Jul 2022 13:21:29 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.91
X-Spam-Level:
X-Spam-Status: No, score=-1.91 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 8RS6-udNqyKu; Wed, 20 Jul 2022 13:21:24 -0700 (PDT)
Received: from relay.sandelman.ca (relay.cooperix.net [IPv6:2a01:7e00:e000:2bb::1]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 84267C14F722; Wed, 20 Jul 2022 13:21:24 -0700 (PDT)
Received: from dooku.sandelman.ca (unknown [12.227.228.130]) by relay.sandelman.ca (Postfix) with ESMTPS id F12C21F459; Wed, 20 Jul 2022 20:21:21 +0000 (UTC)
Received: by dooku.sandelman.ca (Postfix, from userid 179) id 85EF91A0383; Wed, 20 Jul 2022 16:21:20 -0400 (EDT)
From: Michael Richardson <mcr+ietf@sandelman.ca>
To: Ben Schwartz <bemasc=40google.com@dmarc.ietf.org>
cc: Paul Wouters <paul@nohats.ca>, Dan Wing <danwing@gmail.com>, Paul Wouters <paul.wouters@aiven.io>, The IESG <iesg@ietf.org>, draft-ietf-add-dnr@ietf.org, ADD Chairs <add-chairs@ietf.org>, ADD Mailing list <add@ietf.org>, "Andrew.Campling@419.consulting" <Andrew.Campling@419.consulting>
In-reply-to: <CAHbrMsCw21baXenmbCEKqZnzu+vjfxyjH46sOp7ToAT_a9tkFw@mail.gmail.com>
References: <165774161599.52839.7342794318640205540@ietfa.amsl.com> <52F5AF14-52D4-434B-AB19-A0C5BE5D9B59@gmail.com> <34d46ff-7137-4195-bed9-21aa1082fff7@nohats.ca> <CAHbrMsCw21baXenmbCEKqZnzu+vjfxyjH46sOp7ToAT_a9tkFw@mail.gmail.com>
Comments: In-reply-to Ben Schwartz <bemasc=40google.com@dmarc.ietf.org> message dated "Wed, 20 Jul 2022 13:18:29 -0400."
X-Mailer: MH-E 8.6+git; nmh 1.7.1; GNU Emacs 26.3
MIME-Version: 1.0
Content-Type: multipart/signed; boundary="=-=-="; micalg="pgp-sha512"; protocol="application/pgp-signature"
Date: Wed, 20 Jul 2022 16:21:20 -0400
Message-ID: <1667910.1658348480@dooku>
Archived-At: <https://mailarchive.ietf.org/arch/msg/add/fMxCBcjT66TN9wgqO0NQjiX7tu4>
Subject: Re: [Add] Paul Wouters' Discuss on draft-ietf-add-dnr-11: (with DISCUSS)
X-BeenThere: add@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Applications Doing DNS <add.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/add>, <mailto:add-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/add/>
List-Post: <mailto:add@ietf.org>
List-Help: <mailto:add-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/add>, <mailto:add-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 20 Jul 2022 20:21:29 -0000

Ben Schwartz <bemasc=40google.com@dmarc.ietf.org> wrote:
    > FWIW, I've always assumed that DNR on basic consumer CPE would work by
    > simply forwarding the upstream DNR in DHCP.  This would bypass the
    > local forwarder entirely, and avoid any question of how to provision
    > certificates on the CPE.

That's possible, but there are many conflicts with this.

It has a few downsides:
1) can not resolve local names like .home.arpa

2) can not resolve anything if there is no Internet, which makes it hard to
   login to CPE device to find out why there is no Internet.
   
We've had this conversation multiple times, so I'm not quite sure why this is
a surprise.


-- 
Michael Richardson <mcr+IETF@sandelman.ca>, Sandelman Software Works
 -= IPv6 IoT consulting =-