Re: [dbound] On (not) moving forward

Dave Crocker <dhc@dcrocker.net> Sun, 27 March 2016 03:37 UTC

Return-Path: <dhc@dcrocker.net>
X-Original-To: dbound@ietfa.amsl.com
Delivered-To: dbound@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5D72A12D0AF for <dbound@ietfa.amsl.com>; Sat, 26 Mar 2016 20:37:57 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.2
X-Spam-Level:
X-Spam-Status: No, score=-4.2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id MNJdTaHRTjRy for <dbound@ietfa.amsl.com>; Sat, 26 Mar 2016 20:37:56 -0700 (PDT)
Received: from sbh17.songbird.com (sbh17.songbird.com [72.52.113.17]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 32F5F12D0AE for <dbound@ietf.org>; Sat, 26 Mar 2016 20:37:56 -0700 (PDT)
Received: from [192.168.1.168] (76-218-10-206.lightspeed.sntcca.sbcglobal.net [76.218.10.206]) (authenticated bits=0) by sbh17.songbird.com (8.13.8/8.13.8) with ESMTP id u2R3btaZ019468 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES128-SHA bits=128 verify=NOT); Sat, 26 Mar 2016 20:37:55 -0700
To: Paul Hoffman <paul.hoffman@vpnc.org>
References: <20160326025652.14512.qmail@ary.lan> <2F22DF36-B8A9-4CE8-86F2-8592CC8283AB@viagenie.ca> <C0F8F796-7488-44B8-A9D8-CFD2D64EBB5A@virtualized.org> <56F73097.5040906@dcrocker.net> <1A6F8665-E849-4471-84BC-32D238B0A69C@vpnc.org>
From: Dave Crocker <dhc@dcrocker.net>
Organization: Brandenburg InternetWorking
Message-ID: <56F75590.4030100@dcrocker.net>
Date: Sat, 26 Mar 2016 20:37:52 -0700
User-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; rv:38.0) Gecko/20100101 Thunderbird/38.7.1
MIME-Version: 1.0
In-Reply-To: <1A6F8665-E849-4471-84BC-32D238B0A69C@vpnc.org>
Content-Type: text/plain; charset="windows-1252"; format="flowed"
Content-Transfer-Encoding: 7bit
X-Greylist: Sender succeeded SMTP AUTH, not delayed by milter-greylist-4.0 (sbh17.songbird.com [72.52.113.17]); Sat, 26 Mar 2016 20:37:55 -0700 (PDT)
Archived-At: <http://mailarchive.ietf.org/arch/msg/dbound/3B107uRxvUsd-fpQqMeEqGhjyHQ>
Cc: dbound@ietf.org
Subject: Re: [dbound] On (not) moving forward
X-BeenThere: dbound@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
Reply-To: dcrocker@bbiw.net
List-Id: DNS tree bounds <dbound.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dbound>, <mailto:dbound-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dbound/>
List-Post: <mailto:dbound@ietf.org>
List-Help: <mailto:dbound-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dbound>, <mailto:dbound-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 27 Mar 2016 03:37:57 -0000

On 3/26/2016 6:05 PM, Paul Hoffman wrote:
> ...but only if there is no zone cut where you want to put them. As
> Andrew pointed out upstream, some of the use cases for DBOUND require
> that an owner be able to say "at this node, ...", not "at the node above
> me, ..." because the responsible party can't put records at the node
> below them.


The semantic of an underscore branch to domain foo is that it provides 
attributes associated with foo.  The "above me" is built into the 
construct, so that the semantic of data in the underscore branch is not 
"above me" but rather is "here are some attributes associated with foo.

I understand the administrative issues that you cite.  However the 
operational difficulties in creating name entries in the DNS are 
generally significantly less in effort and time than in getting a new RR 
to be useful, end-to-end...

By some orders of magnitude.

d/

-- 

   Dave Crocker
   Brandenburg InternetWorking
   bbiw.net