Re: [Add] AD review of draft-ietf-add-dnr-08

"Eric Vyncke (evyncke)" <evyncke@cisco.com> Fri, 24 June 2022 15:16 UTC

Return-Path: <evyncke@cisco.com>
X-Original-To: add@ietfa.amsl.com
Delivered-To: add@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 60B2FC0D7C9A for <add@ietfa.amsl.com>; Fri, 24 Jun 2022 08:16:50 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -9.604
X-Spam-Level:
X-Spam-Status: No, score=-9.604 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com header.b=AXKw53s9; dkim=pass (1024-bit key) header.d=cisco.onmicrosoft.com header.b=gjTuBZ+R
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id moKpOebn9Dv5 for <add@ietfa.amsl.com>; Fri, 24 Jun 2022 08:16:46 -0700 (PDT)
Received: from alln-iport-3.cisco.com (alln-iport-3.cisco.com [173.37.142.90]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 31CAAC14CF0C for <add@ietf.org>; Fri, 24 Jun 2022 08:16:17 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=69835; q=dns/txt; s=iport; t=1656083777; x=1657293377; h=from:to:subject:date:message-id:references:in-reply-to: mime-version; bh=kiHKW53xnTB+ZmkVCstpGz4UltSEhGTCbQkRQBAztYQ=; b=AXKw53s9ea/AFk8f5ua8oY6zmthTHV4avOoC+yxsn3CdpkPTizodYv1L O01bYBFFnmBgi3dSdwVCQFf9olN5xGplLJbuwTT/F+07ntpjePbmKB66Q D9VwCrpI4wQh2NrhPwt6ajZgv9cS7yWlzhIUHoMNDPmZWAUzMKJapXq3o 4=;
X-IPAS-Result: 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
IronPort-PHdr: A9a23:+BCotBPJ9P8X44C4m9Ul6ncDWUAX0o4cdiYZ6Zsi3rRJdKnrv5HvJ 1fW6vgliljVFZ7a5PRJh6uz0ejgVGUM7IzHvCUEd5pBBBMAgN8dygonBsPNAEbnLfnsOio9G skKVFJs83yhd0ZPH8OrbFzJqXr05jkXSX3C
IronPort-Data: A9a23:axH5naCHLz0moBVW/5vhw5YqxClBgxIJ4kV8jS/XYbTApDJ2hmdVn GRKXWqDbqyLZjb3KY9+Oo22pBlX6sXTm99nOVdlrnsFo1CmBibm6XV1Cm+qYkt+++WaFBoPA /02M4WGdoZsJpPljk/FGqD7qnVh3r2/SLP5CerVUgh8XgYMpB0J0XqPoMZkxN8y6TSFK1nV4 4mq/ZeDYAXNNwNcawr41YrS8HuDg9yq0N8olgRWTexGulbYi04UAPo3TU1mByKlKmX8NrfSq 9frlNlVzEuAl/seIo/NfoLAT6E/auW60T5iJZZhc/PKbhBq/kTe20ugXRYWQR8/Zz6hx7idx DjR3HC9YV9BA0HCpAgSeylKAgsiAYgFw5CZI1+4lu6z/Uvob0K5lp2CDGluVWEZ0vx8DWcL/ vsCJXVRKBuCnOmxhrm8T4GAhOx6c5KtZ9xZ6yomlGyEZRolacirr6Hi6MFJ2jwzi+hFHO3VY IwSbj8HgBHoM0wVZQlOV8lh9AuurkvQVgYbhGysnrgYvXXs7g1wzYfQG8WAL7RmQu0QxC50v Fnu9mj1KhAXKNLZziCKmlqpge/GmC73HogVCbax+vdrmnWU3GUVBxBQXly+ycRVkWakUN5Zb kcT4Cdr8e459VegSZ/2WBjQTGO4gyPwkuF4S4USgDxhAIKNi+pFLgDolgJ8VeE=
IronPort-HdrOrdr: A9a23:z7mMR6gvIIDjICNuMHj/9nh7o3BQX2913DAbv31ZSRFFG/FwyP rBoB1L73DJYWgqNE3IwerwRZVoMkmsiaKdgLNhcYtKOTOGhILGFvAa0WKP+UyDJ8S6zJ8m6U 4CSdkwNDSTNykDsS+S2mDReLxMoKjlzEnrv5ak854Hd3APV0gU1XYeNu/tKDwQeOApP+tdKL Osou584xawc3Ueacq2QlMfWfLYmtHNnJX6JTYbGh8O8mC1/H2VwY+/NyLd8gYVUjtJz7tn23 PCiRbF6qKqtOz+4gPA1lXU849dlLLau5p+7Y23+4gowwfX+0SVjbdaKvi/VfcO0aWSAWMR4Z rxStEbToNOAj3qDyeISFDWqnbdOX4VmgHfIBmj8CLeSQiTfkNgNyKH7rgpKicxonBQz+2V3M 9wrhKkX9A8N2KwoA3to9fPTB1kjUyyvD4rlvMSlWVWVc8EZKZWtpF3xjIfLH4sJlOy1GkcKp gnMOjMoPJNNV+KZXHQuWdihNSqQ3QoBx+DBkwPoNac3TRalG1wixJw/r1Tol4QsJYmD5VU7e XNNapl0LlIU88NdKp4QOMMW9G+BGDBSQ/FdGiSPVPkHqcaPG+lke+83JwloOWxPJAYxpo7n5 rMFFteqG4pYkrrTdaD2ZVamyq9NllVnQ6dvf22y6IJz4EUHoCbQxFrYGpe5/ednw==
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-AV: E=Sophos;i="5.92,218,1650931200"; d="scan'208,217";a="892761737"
Received: from rcdn-core-4.cisco.com ([173.37.93.155]) by alln-iport-3.cisco.com with ESMTP/TLS/DHE-RSA-SEED-SHA; 24 Jun 2022 15:16:15 +0000
Received: from mail.cisco.com (xfe-aln-004.cisco.com [173.37.135.124]) by rcdn-core-4.cisco.com (8.15.2/8.15.2) with ESMTPS id 25OFGF9r018170 (version=TLSv1.2 cipher=AES256-SHA bits=256 verify=OK); Fri, 24 Jun 2022 15:16:15 GMT
Received: from xfe-rtp-003.cisco.com (64.101.210.233) by xfe-aln-004.cisco.com (173.37.135.124) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.986.14; Fri, 24 Jun 2022 10:16:14 -0500
Received: from NAM10-MW2-obe.outbound.protection.outlook.com (64.101.32.56) by xfe-rtp-003.cisco.com (64.101.210.233) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.986.14 via Frontend Transport; Fri, 24 Jun 2022 11:16:14 -0400
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=ALLzk3ayqxVIU29l9caZ/JJXVh6RBfIx8aA+pXzoqztQO7m9V/4CKPNspz1u+/DvVTkJYLkT1ZfdzYzVXZS0byedB2L5ldeG19/wNxHeTl0Egm2FM+80FoT1XvGIAFTTpZF12GUagum45uF/lP73KxdKifEgJAOPBg6uduYxEWcUUGOPuDpBh0ebNSPNVGtu/3l4um0qSTFeBBYvLMZGoqkE2jtss+nPAEQDmhryBYI4zu7Gp3V+RaAa0+43p4TQSVLkbdtRTmZzyZ8UL/R2RmSplUohlsWihin2uf1ZzBDpLjYINoOYVh0FRB7Ur+P5kA5BtnIXseTn63R7/T0b1A==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=kiHKW53xnTB+ZmkVCstpGz4UltSEhGTCbQkRQBAztYQ=; b=fw2Rt9iW6c85jdfH3rjjvjt1/iHmQNti0PzH1hUEWwbvOFYuj7yFRCUCmHcVoekZx2GSr1FXZ9/OMxl64SB/xlobFWJjvW2r6YhgmwTNYuGYGePazQuorAoWJYGYVfQ3cIs3y6tHf7hl9jQH5/eyTLhYzsU8i1geBoejJ4mrW95GFWIqxBoNVeFe+nN2QvD8ae4cB1QgPGEmOsj7l7xZMVrwYp7CnCiT5ED64Db7uLaW1OF9XqXvZ6ONzj1ovMofP/sFV3nBmKcDLV5hHgcMd5Y4vUylnpGrUzvX/X2KlSDvSXvhG+/PT12pFeyI37AYoxCQoKHtml2W2kARuJpj2w==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cisco.com; dmarc=pass action=none header.from=cisco.com; dkim=pass header.d=cisco.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.onmicrosoft.com; s=selector2-cisco-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=kiHKW53xnTB+ZmkVCstpGz4UltSEhGTCbQkRQBAztYQ=; b=gjTuBZ+RhQ1HmdARYgYdAmpbOWgPsP9weKVrhhSe+Vw/gI3mUTYwNb41w8yivfsmGOzXsBOBsasyn5TgBBqPxQTS9gOwTIjuk1FMAXLuDeBIi1RUM636uvFlgf4cAB6GerRut6PHX2WEasOoqiqmYdQMpVCLrrjzFszbvxaI55U=
Received: from PH0PR11MB4966.namprd11.prod.outlook.com (2603:10b6:510:42::21) by DM6PR11MB4490.namprd11.prod.outlook.com (2603:10b6:5:1df::29) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5373.17; Fri, 24 Jun 2022 15:16:12 +0000
Received: from PH0PR11MB4966.namprd11.prod.outlook.com ([fe80::3891:c0c9:3d21:bfe7]) by PH0PR11MB4966.namprd11.prod.outlook.com ([fe80::3891:c0c9:3d21:bfe7%6]) with mapi id 15.20.5373.017; Fri, 24 Jun 2022 15:16:12 +0000
From: "Eric Vyncke (evyncke)" <evyncke@cisco.com>
To: "mohamed.boucadair@orange.com" <mohamed.boucadair@orange.com>, "add@ietf.org" <add@ietf.org>
Thread-Topic: AD review of draft-ietf-add-dnr-08
Thread-Index: AQHYhs+io9y4HP8WnkCZ7FL+lvbjXK1cklyQgAHSTID//+KysIAAhzgA
Date: Fri, 24 Jun 2022 15:16:12 +0000
Message-ID: <4B701A47-2FED-4BA2-AC3A-89E604EEB898@cisco.com>
References: <6513B2D7-1D0A-49B3-AAEB-3C17C2B7400A@cisco.com> <23893_1655977232_62B43510_23893_77_1_de1ff3cf3a8646848ef74e1edbf70fa3@orange.com> <90FDC2D0-F7B5-491C-BFB8-BD18E27181B5@cisco.com> <19042_1656062555_62B5825A_19042_485_1_9ab5c218249340f68a6ce065f6c54261@orange.com>
In-Reply-To: <19042_1656062555_62B5825A_19042_485_1_9ab5c218249340f68a6ce065f6c54261@orange.com>
Accept-Language: fr-BE, en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/16.62.22061100
msip_labels: MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Enabled=true; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SetDate=2022-06-24T09:12:29Z; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Method=Privileged; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Name=unrestricted_parent.2; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SiteId=90c7a20a-f34b-40bf-bc48-b9253b6f5d20; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ActionId=5de4c750-14fd-4376-8e5f-ddfe2017389d; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ContentBits=0
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=cisco.com;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 982e889d-09f4-4b25-4fa5-08da55f47964
x-ms-traffictypediagnostic: DM6PR11MB4490:EE_
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:PH0PR11MB4966.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230016)(4636009)(39860400002)(346002)(396003)(366004)(376002)(136003)(6486002)(966005)(30864003)(2906002)(110136005)(166002)(91956017)(83380400001)(122000001)(2616005)(71200400001)(8936002)(5660300002)(36756003)(186003)(38100700002)(66446008)(8676002)(66556008)(66476007)(64756008)(66946007)(66574015)(33656002)(6506007)(6512007)(478600001)(53546011)(316002)(86362001)(38070700005)(41300700001)(76116006)(45980500001); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_4B701A472FED4BA2AC3A89E604EEB898ciscocom_"
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: PH0PR11MB4966.namprd11.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 982e889d-09f4-4b25-4fa5-08da55f47964
X-MS-Exchange-CrossTenant-originalarrivaltime: 24 Jun 2022 15:16:12.3188 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: IvrVLZA7aoDSKlSVHWpHkUqzFd3gwhq1KWnqASLa+vGmGFgyEajnjYWZxW5DMbn4qQbHWqP3yPtEOWpZ8ZYw4A==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM6PR11MB4490
X-OriginatorOrg: cisco.com
X-Outbound-SMTP-Client: 173.37.135.124, xfe-aln-004.cisco.com
X-Outbound-Node: rcdn-core-4.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/add/iYqY-_4-RnLC432JEAaHHH_oXFM>
Subject: Re: [Add] AD review of draft-ietf-add-dnr-08
X-BeenThere: add@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Applications Doing DNS <add.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/add>, <mailto:add-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/add/>
List-Post: <mailto:add@ietf.org>
List-Help: <mailto:add-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/add>, <mailto:add-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 24 Jun 2022 15:16:50 -0000

Med,

I just had a look at https://raw.githubusercontent.com/boucadair/draft-btw-add-home-network/master/draft-ietf-add-dnr.txt and this version seems to address all the point of my AD review.

Please go forward and upload it 😊 Then, I can start the IETF last call on this DNR but also DDR & SVCB

Thank you

-Ă©ric


From: "mohamed.boucadair@orange.com" <mohamed.boucadair@orange.com>
Date: Friday, 24 June 2022 at 11:22
To: Eric Vyncke <evyncke@cisco.com>, "add@ietf.org" <add@ietf.org>
Subject: RE: AD review of draft-ietf-add-dnr-08

Re-,

Please see inline.

Cheers,
Med

De : Eric Vyncke (evyncke) <evyncke@cisco.com>
Envoyé : vendredi 24 juin 2022 10:57
À : BOUCADAIR Mohamed INNOV/NET <mohamed.boucadair@orange.com>; add@ietf.org
Objet : Re: AD review of draft-ietf-add-dnr-08

Hello Med,

Thank you for your reply and for some actions of yours. Please see below for EV>

Regards

-Ă©ric


From: "mohamed.boucadair@orange.com<mailto:mohamed.boucadair@orange.com>" <mohamed.boucadair@orange.com<mailto:mohamed.boucadair@orange.com>>
Date: Thursday, 23 June 2022 at 11:40
To: Eric Vyncke <evyncke@cisco.com<mailto:evyncke@cisco.com>>, "add@ietf.org<mailto:add@ietf.org>" <add@ietf.org<mailto:add@ietf.org>>
Subject: RE: AD review of draft-ietf-add-dnr-08

Hi Éric,

Thank you for the review.

Please see inline.

Cheers,
Med

De : Add <add-bounces@ietf.org<mailto:add-bounces@ietf.org>> De la part de Eric Vyncke (evyncke)
Envoyé : jeudi 23 juin 2022 09:06
À : add@ietf.org<mailto:add@ietf.org>
Objet : [Add] AD review of draft-ietf-add-dnr-08

# Éric Vyncke, INT AD, comments for draft-ietf-add-dnr-08
CC @evyncke

Thank you for the work put into this document.

As usual, as the responsible AD for the ADD WG, I have done an AD review before the IETF Last Call. Please find a MD-formatted review below. Before going further, I am requesting the authors to act/reply/comment on all the points below. The end goal is to ease the rest of the publication process.

Regards,

-Ă©ric

## COMMENT

### 6MAN review of the RA option

The document shepherd write-up is explicit about the DHC WG review but what about the 6MAN review of the RA options ? Suggest to be clear in the doc shepherd document about this point, even if only writing "6MAN WG was not consulted" (then I will make it clear for the IETF last call).

[Med] I confirm that we solicited 6man + reach out individuals to seek feedback on the RA part.

EV> This would be nice to add in the doc shepherd review. Anyway, I will keep this in my mind when starting the IETF last call.
EV> OTOH, I only see https://mailarchive.ietf.org/arch/msg/ipv6/qeSwxWBoPTOs0fzyaSBzUC2g-sc/ which was about a specific point of the DNR I-D and not about the full RA option.

### "DNS Server" could be ambiguous

The abstract, the introduction, and possibly other sections use "local DNS server" while I think that the authors' intent was rather "local recursive DNS server". If this is the case, then suggest changing the wording.

[Med] We are using the generic term “DNS server” on purpose as the options can also be used to discover forwarders. The subtleties between the various modes are covered in RFC8499. That’s why we have: “This document makes use of the terms defined in [RFC8499<https://datatracker.ietf.org/doc/html/rfc8499>].“

EV> I appreciate that forwarders are in scope. But RFC 8499 does not define « DNS server » so this reference does not help.
EV> Therefore, I strongly suggest using a wording such as « DNS server (i.e., recursive resolver or forwarder) » in the abstract and add some text in the introduction stating that « DNS server » covers both recursive resolver and forwarder.

[Med] As you can see in the diff (https://tinyurl.com/latest-dnr-changes), I went with Dave’s proposal.

### Section 3.1 flow

```
   In order to allow for PKIX-based authentication between a DNS client
   and an encrypted DNS server,
```
While the above text is correct, the reader has only the explanation later. Suggest to change the flow to ease the reader's task.

[Med] Can you please indicate the change you have in mind? Thanks.


### Section 3.1 ADN

"ADN" is not expanded at first use.

[Med] This was already expanded in the introduction.

EV> good point, I failed to spot it ;-)

### Section 3.1 Global IPv4 address

```
   This IP address can be a
   private IPv4 address, a link-local address, a Unique Local IPv6
   unicast Address (ULA), or a Global Unicast Address (GUA).
```
What about global IPv4 address ? The wording seems to indicate an exhaustive list while it is not. What about anycast ?

[Med] The text you quoted was in reference to a specific example: “For example, a router embedding a recursive server or a forwarder has to include one single IP address pointing to one of its LAN-facing interfaces”. For such a case, the LAN-facing address is typically a private IPv4 address. The case of public (which includes anycast) is covered by this text in Section 5.1:

==

Both private and

      public IPv4 addresses can be included in this field.
==

EV> I still find it slightly confusing though. Could you rephrase into “E.g., This IP address can be a ...”
[Med] ACK. As the previous sentence starts also with “For example”, I went with this wording in the candidate version: “Typically, this IP address can be a..”

### Section 3.1 round-robin

```
   If multiple IP addresses are to be returned in an Encrypted DNS
   option, these addresses are ordered in the preference for use by the
   client.
```
Should there be a recommendation somewhere for a round-robin to spread the load ?

[Med] We don’t include such aspects as that is more about selection than discovery.


### Section 3.1 RECOMMENDED vs. MUST vs. SHOULD

```
   At least the following service
   parameters are RECOMMENDED to be supported by a DNR implementation:
```
While "dohpath" is obviously applicable only to DoH, should the normative language be more than "RECOMMENDED", a "MUST" or "SHOULD" seems at the right level for "alpn" and "port" at least.

[Med] As you know, RECOMMENDED is equivalent to SHOULD. That’s said, we can’t use MUST for all the parameters because, for example, the support of ECH is not justified for the typical home case.

EV> what annoys me is that some parameters (alpn) are MUST and not only RECOMMENDED/SHOULD
[Med] We can split this into two sets: one with MUST and another with recommended. See the suggested text in the diff.

Later in `returning an ADN only can be considered` suggest using a 'MAY'

[Med] This is about configuration/use, not implementation support.

Beware that these changes are important and will need to be run again through the WG during the IETF Last Call.

### Section 4.1 reference to dnsop-svcb ?

```
      Service Parameters (SvcParams) (variable length):  Specifies a set of
      service parameters that are encoded following the rules in
      Section 2.1 of [I-D.ietf-dnsop-svcb-https].  Service parameters
```
is it section 2.1 (zone file) or section 2.2 (wire format)?

[Med] I confirm: 2.1. Particularly, this part:

==

  SvcParams are a

   whitespace-separated list, with each SvcParam consisting of a

   SvcParamKey=SvcParamValue pair or a standalone SvcParamKey.
==

EV> I still have doubts, but I will trust the authors on this one

### Section 5.1 example

To be consistent with section 4.1, please also use a figure similar to figure 2 rather than the existing figure 5.

[Med] Added a new sentence to refer to the example in Figure 2 and removed figure 5.


### Section 5.1 address length

```
   Addr Length:  Indicates the length of included IPv4 addresses in
      octets.  It MUST be a multiple of 4 for ServiceMode.
```
Unsure what "for ServiceMode" has to do here... Should it be removed ?

[Med] Because in the ServiceMode, an IP address must be returned. We don’t have that constraint for the ADN-only mode (as no address is returned).

EV> ack, thanks

### Section 6.1 address length

```
   Addr Length:  Indicates the length of included IPv6 addresses in
      octets.  It MUST be a multiple of 16 for ServiceMode.
```
Unsure what "for ServiceMode" has to do here... Should it be removed ?
[Med] Idem as above.

### Section 6.2

What happens when multiple RAs are received ? Either from different routers or from the same router ?

[Med] That’s covered by this text:

==

In addition, the host

   follows the procedure described in Section 5.3.1 of [RFC8106]<https://datatracker.ietf.org/doc/html/rfc8106#section-5.3.1> with

   the formatting requirements in Section 6.1<https://datatracker.ietf.org/doc/html/draft-ietf-add-dnr#section-6.1> substituted for the length

   validation.
==


Section 5.3.1 of 8106 says the following:

==

   In the case where the DNS information of RDNSS and DNSSL can be

   obtained from multiple sources, such as RAs and DHCP, the IPv6 host

   SHOULD keep some DNS options from all sources.
==

EV> except that RFC 8106 only applies to the RDNSS RA option and not to the DNR RA options. So, it is required, IMHO, to repeat the text.
[Med] The intent here is to leverage on the RFC8106 procedure for processing the encrypted DNS options rather than repeating it. I edited the text to make this clear (please see the diff). Hope this is better.

### Section 7.4 PSK

"pre-shared key", may I assume it is the WPA PSK ? Please be specific.

[Med] OK, updated the text to clarify this. Thanks.


### Section 7.4 station-to-station

If not mistaken (but I am far from being a IEEE 802.11 expert), the AP can be configured to prevent all station-to-station conversations, which will stop many of the above attacks. If confirmed, then suggest to mention it.

[Med] Will double check. Thanks.


### Section 8.3

"DNS Encrypted DNS Option" or "Encrypted DNS Option" ?

[Med] Fixed. Thanks.


_________________________________________________________________________________________________________________________



Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc

pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler

a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration,

Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci.



This message and its attachments may contain confidential or privileged information that may be protected by law;

they should not be distributed, used or copied without authorisation.

If you have received this email in error, please notify the sender and delete this message and its attachments.

As emails may be altered, Orange is not liable for messages that have been modified, changed or falsified.

Thank you.

_________________________________________________________________________________________________________________________



Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc

pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler

a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration,

Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci.



This message and its attachments may contain confidential or privileged information that may be protected by law;

they should not be distributed, used or copied without authorisation.

If you have received this email in error, please notify the sender and delete this message and its attachments.

As emails may be altered, Orange is not liable for messages that have been modified, changed or falsified.

Thank you.