Re: [Add] [EXTERNAL] Re: draft-grover-add-policy-detection-00

Neil Cook <neil.cook@open-xchange.com> Wed, 17 July 2019 16:17 UTC

Return-Path: <neil.cook@open-xchange.com>
X-Original-To: add@ietfa.amsl.com
Delivered-To: add@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id AFB95120872 for <add@ietfa.amsl.com>; Wed, 17 Jul 2019 09:17:54 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.298
X-Spam-Level:
X-Spam-Status: No, score=-4.298 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-2.3, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=open-xchange.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id coYnco4i2Hew for <add@ietfa.amsl.com>; Wed, 17 Jul 2019 09:17:51 -0700 (PDT)
Received: from mx4.open-xchange.com (alcatraz.open-xchange.com [87.191.39.187]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D3A3B1208A4 for <add@ietf.org>; Wed, 17 Jul 2019 09:17:50 -0700 (PDT)
Received: from open-xchange.com (imap.open-xchange.com [10.20.30.10]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mx4.open-xchange.com (Postfix) with ESMTPS id 2A3D86A3B8; Wed, 17 Jul 2019 18:17:49 +0200 (CEST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=open-xchange.com; s=201705; t=1563380269; bh=JMNndFYE4P3FPFpzD2kIqkoKiwrrffpNzNcFbHS/N+Q=; h=From:Subject:Date:In-Reply-To:Cc:To:References:From; b=LKo+RC9qO3yxTyg22XUdzSfPm0b5U6ZabWgp76wRzM0/p4TR0tcL6mYkuJTZ5FEBE 33s+ywCAByQOAffruUuyJP4SqDIIdM1th4dfdehETAPCQMwyy69JBER2VLmToJc6U/ NfLz+DHzFyJ7SN1/ab/yW80Ojpny+QlaDwtV5XgdeuSlqysNmZ/IEFUzRTL/HOz1Db T+7C9F/k3iiwikWxuBwQkDvcjqxhZ0sh72ZBfeI3bKhLAYZyyzejIBeOw9sNMtNVW/ Ayzi+Vy6Pa4htlu/if+HKbt2r+PNxCkNcUQhaVg9p5/UJgYL1W3pAwlaFmJHa7g8yG OsR5ptqv70fPg==
Received: from [10.242.2.29] (unknown [10.242.2.29]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by open-xchange.com (Postfix) with ESMTPSA id 5D2F53C0101; Wed, 17 Jul 2019 18:17:48 +0200 (CEST)
From: Neil Cook <neil.cook@open-xchange.com>
Message-Id: <1DF13B9E-D0A2-4F4B-8E61-1C14464EA64B@open-xchange.com>
Content-Type: multipart/alternative; boundary="Apple-Mail=_F1FB6BF5-26E9-4A40-84EB-A0317292F675"
Mime-Version: 1.0 (Mac OS X Mail 12.4 \(3445.104.11\))
Date: Wed, 17 Jul 2019 17:17:46 +0100
In-Reply-To: <253de125-ff1c-31e6-6ca7-e7cb81d1206b@cs.tcd.ie>
Cc: Neil Cook <neil.cook=40open-xchange.com@dmarc.ietf.org>, Ted Hardie <ted.ietf@gmail.com>, Vittorio Bertola <vittorio.bertola@open-xchange.com>, add@ietf.org, Rob Sayre <sayrer@gmail.com>
To: Stephen Farrell <stephen.farrell@cs.tcd.ie>
References: <CAChr6SwEUz9MrdRA0bnv9f-oNi0oUHkfRKjd9-o6jwhuckLXdw@mail.gmail.com> <CAFWeb9JVBj+Yehup5q4v9X-7XDY+02frd-04AQGL2HoSLON2qA@mail.gmail.com> <CABcZeBMY9q9vKGse1svzbvXF_dSHA+9q06j4ugDVCZP9VT1koQ@mail.gmail.com> <CAChr6Sz5Rfz=UxOYuPguSvVK2HCX2ZoA1-FytW7+EOUxN8y46Q@mail.gmail.com> <CABcZeBNB7ASu2U3ZMBZ+OOxEhbSnhDXwFN3Lsex1uzVSDv3R=Q@mail.gmail.com> <CAChr6SwEwRRX7BA6ZCeBuC93hFxbfi3d7G_3G3VA7Lm09yuneg@mail.gmail.com> <CABcZeBNa97Vb6Fw-fMhoZnMezGtm3nJODENN4=XXsz7GWxf2Cg@mail.gmail.com> <CAChr6Sxm__NroZ92v4HL_6iCa62fwYgNw9r8ZDAxCdzVwNoDGw@mail.gmail.com> <20190716190219.5DEF4156CDF0@fafnir.remote.dragon.net> <CAChr6SzSkVU5xbh0sZCCEgd7BUdr-dMorNq=5iMkWp66k8PVow@mail.gmail.com> <15205609-8203-4C6F-9DE7-14D492873C51@rfc1035.com> <CAChr6Syf_=3__jcv6D7b1JokGFYpFuy9y9419V0nCAx=MMh24A@mail.gmail.com> <1513817825.9983.1563350802523@appsuite-gw1.open-xchange.com> <CA+9kkMAdGF_U-syxtFVz-MfBfv-GF_CFouvuUhqcSH96-=Hkjg@mail.gmail.com> <ABBFB472-DC7C-48E2-999E-C364BFD3260E@open-xchange.com> <253de125-ff1c-31e6-6ca7-e7cb81d1206b@cs.tcd.ie>
X-Mailer: Apple Mail (2.3445.104.11)
Archived-At: <https://mailarchive.ietf.org/arch/msg/add/t34okk_gtOThtSppua-p-6LSV_A>
Subject: Re: [Add] [EXTERNAL] Re: draft-grover-add-policy-detection-00
X-BeenThere: add@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Applications Doing DNS <add.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/add>, <mailto:add-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/add/>
List-Post: <mailto:add@ietf.org>
List-Help: <mailto:add-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/add>, <mailto:add-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 17 Jul 2019 16:18:01 -0000

Hi Stephen,

> On 17 Jul 2019, at 16:54, Stephen Farrell <stephen.farrell@cs.tcd.ie> wrote:
> I don't question your right to do as you do, but as an (I hope)
> equally valid single data point, I don't do the above and would
> be fine if visitors to my home network used DoH with an external
> service without being under my control. Going further, were I to
> enforce my DNS policy choices on visitors to my home network
> without explaining those, (which is mostly impractical), I would
> consider myself to be potentially attacking visitors to my home,
> which is IMO inhospitable.

Indeed, everyone has the right to their own viewpoint, and we should consider as many as possible when designing protocols, particularly when they differ from our own.

> 
> There are multiple valid conflicting setups here and the issue I
> think is that the application doing DNS can't detect which are in
> play, so the application developer has to try pick a safe default
> I guess. Not an easy task.
> 

Well I guess the draft under discussion is trying to make it such that cooperating endpoint don’t have to just pick a safe default (in a user population of two, at least one of us will be unhappy with that default!), and can ideally make a more informed decision.

> S.
> <0x5AB2FAF17B172BEA.asc>-- 
> Add mailing list
> Add@ietf.org
> https://www.ietf.org/mailman/listinfo/add


Neil Cook
neil.cook@open-xchange.com

-------------------------------------------------------------------------------------
Open-Xchange AG, Rollnerstr. 14, 90408 Nuremberg, District Court Nuremberg HRB 24738
Managing Board: Rafael Laguna de la Vera, Carsten Dirks, Michael Knapstein, Stephan Martin 
Chairman of the Board: Richard Seibt

European Office: 
Open-Xchange GmbH, Olper Huette 5f, D-57462 Olpe, Germany, District Court Siegen, HRB 8718 
Managing Director: Frank Hoberg

US Office: 
Open-Xchange. Inc., 530 Lytton Avenue, Palo Alto, CA 94301, USA 
-------------------------------------------------------------------------------------