Re: [apps-discuss] [taugh.com-standards] Comments on draft-levine-orgboundary

Andrew Sullivan <ajs@anvilwalrusden.com> Mon, 22 July 2013 02:40 UTC

Return-Path: <ajs@anvilwalrusden.com>
X-Original-To: apps-discuss@ietfa.amsl.com
Delivered-To: apps-discuss@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 09AA021F9D6B for <apps-discuss@ietfa.amsl.com>; Sun, 21 Jul 2013 19:40:25 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.84
X-Spam-Level:
X-Spam-Status: No, score=-0.84 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, HELO_MISMATCH_INFO=1.448, HOST_MISMATCH_NET=0.311]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ugKawomPjwQw for <apps-discuss@ietfa.amsl.com>; Sun, 21 Jul 2013 19:40:20 -0700 (PDT)
Received: from mx1.yitter.info (ow5p.x.rootbsd.net [208.79.81.114]) by ietfa.amsl.com (Postfix) with ESMTP id 90D0621F9ADD for <apps-discuss@ietf.org>; Sun, 21 Jul 2013 19:40:20 -0700 (PDT)
Received: from mx1.yitter.info (c-75-69-155-67.hsd1.nh.comcast.net [75.69.155.67]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by mx1.yitter.info (Postfix) with ESMTPSA id 6672E8A031 for <apps-discuss@ietf.org>; Mon, 22 Jul 2013 02:40:16 +0000 (UTC)
Date: Sun, 21 Jul 2013 22:40:14 -0400
From: Andrew Sullivan <ajs@anvilwalrusden.com>
To: apps-discuss@ietf.org
Message-ID: <20130722024014.GA40429@mx1.yitter.info>
References: <CAL0qLwZD6uV-XZkwQBX2MEmDmnBy2opt9pgGFrAgUxnr+LJk7g@mail.gmail.com> <alpine.BSF.2.00.1307210907590.15183@joyce.lan>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Disposition: inline
In-Reply-To: <alpine.BSF.2.00.1307210907590.15183@joyce.lan>
User-Agent: Mutt/1.5.21 (2010-09-15)
Subject: Re: [apps-discuss] [taugh.com-standards] Comments on draft-levine-orgboundary
X-BeenThere: apps-discuss@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: General discussion of application-layer protocols <apps-discuss.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/apps-discuss>, <mailto:apps-discuss-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/apps-discuss>
List-Post: <mailto:apps-discuss@ietf.org>
List-Help: <mailto:apps-discuss-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/apps-discuss>, <mailto:apps-discuss-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 22 Jul 2013 02:40:25 -0000

On Sun, Jul 21, 2013 at 09:16:12AM -0400, John R Levine wrote:

> Unfortunately, that doesn't work.
> 
>   aaa.foo.ontario.ca and bbb.foo.ontario.ca are the same entity
> 
>   aaa.toronto.ontario.ca and bbb.toronto.ontario.ca are not

To be clear if slightly pedantic about the example, the current
registration rules don't permit the first case any more.  Also as I
understand it, case (2) sort of depends on what you mean by "same
entity".  Everything of the form [municipality].[province].ca under
the current rules must be a department of the municipality.  You can't
register (for instance) somecompany.toronto.on.ca.  This is under the
CIRA rules for the delegation of [municipality].[province].ca.

Now, none of that obviates your basic point, which is that this
pattern is still possible.  But that argument, it seems to me, leads
almost inexorably to the conclusion that you almost certainly need to
descend the tree; and once you've gone that far the overall opt-in
model I've argued for starts to look like it makes more sense.  (I
still appreciate the problem of having to maintain a record for every
name beneath one of these policy cuts.)

> These have lousy DNS cache behavior, but the closest encloser rule
> means that you can find the cut point for any domain with one UDP
> lookup.

Ok, but I'm not sure the cut point is the thing that makes the
difference.  For instance, there is no zone cut at dyndns.org, but
that name is (and certainly should be) administratively separate from
everything beneath it.

A

-- 
Andrew Sullivan
ajs@anvilwalrusden.com