Re: [dane] making ietf.org eat the DANE dogfood

Sean Turner <turners@ieca.com> Wed, 22 May 2013 12:08 UTC

Return-Path: <turners@ieca.com>
X-Original-To: dane@ietfa.amsl.com
Delivered-To: dane@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 8A13921F9289 for <dane@ietfa.amsl.com>; Wed, 22 May 2013 05:08:15 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.263
X-Spam-Level:
X-Spam-Status: No, score=-102.263 tagged_above=-999 required=5 tests=[AWL=0.002, BAYES_00=-2.599, IP_NOT_FRIENDLY=0.334, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id hk9gTYDL4+tR for <dane@ietfa.amsl.com>; Wed, 22 May 2013 05:08:08 -0700 (PDT)
Received: from gateway12.websitewelcome.com (gateway12.websitewelcome.com [67.18.21.19]) by ietfa.amsl.com (Postfix) with ESMTP id A5CAB21F9057 for <dane@ietf.org>; Wed, 22 May 2013 05:08:08 -0700 (PDT)
Received: by gateway12.websitewelcome.com (Postfix, from userid 5007) id 5261910F14BFA; Wed, 22 May 2013 07:08:08 -0500 (CDT)
Received: from gator1743.hostgator.com (gator1743.hostgator.com [184.173.253.227]) by gateway12.websitewelcome.com (Postfix) with ESMTP id 437EB10F14BC7 for <dane@ietf.org>; Wed, 22 May 2013 07:08:08 -0500 (CDT)
Received: from [173.73.135.101] (port=52548 helo=thunderfish.local) by gator1743.hostgator.com with esmtpsa (TLSv1:DHE-RSA-AES256-SHA:256) (Exim 4.80) (envelope-from <turners@ieca.com>) id 1Uf7pv-0004Tx-UR; Wed, 22 May 2013 07:08:08 -0500
Message-ID: <519CB527.4040108@ieca.com>
Date: Wed, 22 May 2013 08:08:07 -0400
From: Sean Turner <turners@ieca.com>
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.6; rv:17.0) Gecko/20130509 Thunderbird/17.0.6
MIME-Version: 1.0
To: Peter Saint-Andre <stpeter@stpeter.im>
References: <519BD393.7020302@ieca.com> <519BD433.6090609@stpeter.im> <519CA48B.4060903@cs.tcd.ie>
In-Reply-To: <519CA48B.4060903@cs.tcd.ie>
Content-Type: text/plain; charset="ISO-8859-1"; format="flowed"
Content-Transfer-Encoding: 7bit
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
X-AntiAbuse: Primary Hostname - gator1743.hostgator.com
X-AntiAbuse: Original Domain - ietf.org
X-AntiAbuse: Originator/Caller UID/GID - [47 12] / [47 12]
X-AntiAbuse: Sender Address Domain - ieca.com
X-BWhitelist: no
X-Source:
X-Source-Args:
X-Source-Dir:
X-Source-Sender: (thunderfish.local) [173.73.135.101]:52548
X-Source-Auth: sean.turner@ieca.com
X-Email-Count: 3
X-Source-Cap: ZG9tbWdyNDg7ZG9tbWdyNDg7Z2F0b3IxNzQzLmhvc3RnYXRvci5jb20=
Cc: dane@ietf.org
Subject: Re: [dane] making ietf.org eat the DANE dogfood
X-BeenThere: dane@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: DNS-based Authentication of Named Entities <dane.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dane>, <mailto:dane-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dane>
List-Post: <mailto:dane@ietf.org>
List-Help: <mailto:dane-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dane>, <mailto:dane-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 22 May 2013 12:08:17 -0000

On 5/22/13 6:57 AM, Stephen Farrell wrote:
>
>
> On 05/21/2013 09:08 PM, Peter Saint-Andre wrote:
>> On 5/21/13 2:05 PM, Sean Turner wrote:
>>> I've been informally asking around about what people might think
>>> about requesting that ietf.org add support for DANE.  Support isn't
>>> there yet in the browsers but folks have to deploy it on the server
>>> side and I think it might as well be us.  I know it's likely not
>>> going to be be as simple just asking, but I'd hear what the WG
>>> thinks about the idea.
>>
>> +1 to eating our own dogfood.
>>
>> In this case, what exactly does that mean? DANE support for the
>> website(s) (HTTPS), mailing lists (SMTP), chatrooms (XMPP), other?
>
> Taking a guess, the initial thing will probably be to get the
> tools/AMS folks familiar with whatever tools are out there,
> then probably publish TLSA records for the web sites (while
> keeping the CA certs of course) and after that we'll see. I
> wouldn't be surprised if the SMTP/TLS with DANE thing was the
> first one to offer benefits, but its maybe still a little
> early for that just yet.

Yeah I was thinking website then smtp and then whatever comes next.

spt

>>
>> Peter
>>
>> _______________________________________________
>> dane mailing list
>> dane@ietf.org
>> https://www.ietf.org/mailman/listinfo/dane
>>
> _______________________________________________
> dane mailing list
> dane@ietf.org
> https://www.ietf.org/mailman/listinfo/dane
>