Re: [Add] Mozilla's DoH resolver policy

"Ralf Weber" <dns@fl1ger.de> Wed, 17 April 2019 07:20 UTC

Return-Path: <dns@fl1ger.de>
X-Original-To: add@ietfa.amsl.com
Delivered-To: add@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 89BEA120161 for <add@ietfa.amsl.com>; Wed, 17 Apr 2019 00:20:18 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.901
X-Spam-Level:
X-Spam-Status: No, score=-1.901 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id BEw0RnlD0ki2 for <add@ietfa.amsl.com>; Wed, 17 Apr 2019 00:20:16 -0700 (PDT)
Received: from smtp.guxx.net (smtp.guxx.net [IPv6:2a01:4f8:a0:322c::25:42]) by ietfa.amsl.com (Postfix) with ESMTP id D7B801204BF for <add@ietf.org>; Wed, 17 Apr 2019 00:20:15 -0700 (PDT)
Received: by nyx.guxx.net (Postfix, from userid 107) id 57BB45F42164; Wed, 17 Apr 2019 09:20:14 +0200 (CEST)
Received: from [172.19.152.234] (tmo-122-49.customers.d1-online.com [80.187.122.49]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by nyx.guxx.net (Postfix) with ESMTPSA id 955A05F4005F; Wed, 17 Apr 2019 09:20:12 +0200 (CEST)
From: Ralf Weber <dns@fl1ger.de>
To: Ben Schwartz <bemasc=40google.com@dmarc.ietf.org>
Cc: "Livingood, Jason" <Jason_Livingood@comcast.com>, add@ietf.org, Peter Saint-Andre <stpeter@mozilla.com>
Date: Wed, 17 Apr 2019 09:20:05 +0200
X-Mailer: MailMate (1.12.4r5594)
Message-ID: <A7A490EA-EE21-4B10-B9BA-61DAFD0375B6@fl1ger.de>
In-Reply-To: <CAHbrMsDqh4cf3hYKoir6h3ykV7QiCk1yTXYX7s0x2p7e9A=qqg@mail.gmail.com>
References: <297C80CE-F017-4F4A-80E2-79941E8B9E02@icann.org> <b64761dc-dfab-e4e1-4bfb-82d607efa590@riseup.net> <alpine.LRH.2.21.1904101324530.9940@bofh.nohats.ca> <64aeff58-6d68-4c4f-b991-2b2f62d193a0@www.fastmail.com> <90A5C5C4-373C-4B39-80C2-C115CD23CB4D@fl1ger.de> <994839978.18707.1554973716877@appsuite.open-xchange.com> <af5f5c76-0095-65a0-39d1-d29d4bb0e906@mozilla.com> <ybl36mn8b54.fsf@w7.hardakers.net> <f9d0cd98-db0c-7f42-d351-d9a5002c4765@mozilla.com> <21C5261E-9DE0-4CFD-A949-6E91DD0C2552@cable.comcast.com> <9FDAE487-6E98-4332-BB57-A626A02A6402@cable.comcast.com> <CAHbrMsDqh4cf3hYKoir6h3ykV7QiCk1yTXYX7s0x2p7e9A=qqg@mail.gmail.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 8bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/add/s0saCOKNhP5bN2lu7V7xEigb9cI>
Subject: Re: [Add] Mozilla's DoH resolver policy
X-BeenThere: add@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Applications Doing DNS <add.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/add>, <mailto:add-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/add/>
List-Post: <mailto:add@ietf.org>
List-Help: <mailto:add-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/add>, <mailto:add-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 17 Apr 2019 07:20:19 -0000

Moin!

On 16 Apr 2019, at 20:20, Ben Schwartz wrote:
> I think the question of whether we can improve on ECS is interesting, but I
> would encourage you to follow up in DPRIVE or DNSOP, rather than this ADD
> list, since that question is equally relevant regardless of whether the
> query is originated by an application.
That is correct and there is work in dprive on that. However it is relevant
here as Mozilla has required secure communication between recursive and
authoritative servers, for which we don’t have a standard.

So the question is should applications require something that is not
standardised in any way (and not use something that has been standardised
for over a decade - DNSSEC - but I guess that is a different question)?

So long
-Ralf
—--
Ralf Weber