Re: [dbound] [DNSOP] Related Domains By DNS (RDBD) Draft

"Michael J. Sheldon" <msheldon@godaddy.com> Wed, 27 February 2019 22:19 UTC

Return-Path: <msheldon@godaddy.com>
X-Original-To: dbound@ietfa.amsl.com
Delivered-To: dbound@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1987F131176; Wed, 27 Feb 2019 14:19:39 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.901
X-Spam-Level:
X-Spam-Status: No, score=-1.901 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_MED=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=secureservernet.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 0ZuJmlpOxTqc; Wed, 27 Feb 2019 14:19:36 -0800 (PST)
Received: from NAM02-SN1-obe.outbound.protection.outlook.com (mail-eopbgr770137.outbound.protection.outlook.com [40.107.77.137]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 82877131170; Wed, 27 Feb 2019 14:19:36 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=secureservernet.onmicrosoft.com; s=selector1-godaddy-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=XkBvrNK7wv7LxPi5gALoK1PlGuaiIIaunTbrl4JCtqQ=; b=5q1PMALQ1aMUjkdrrsxCw6i6w0lpcYVk593WgsZ1otolBy93RmPgHtGLzTD3UO9FHktS2CdfA9rWZzQI7DjYp9BPqh/AR+AldJqCeOmodNDfGS6I8h2xfEHXI2BhoJr8QaFYeVoFbwMvK4Q60WLSQRZLUbQJOHMCOXj9zlHCtu8=
Received: from BYAPR02MB5190.namprd02.prod.outlook.com (20.177.124.15) by BYAPR02MB5672.namprd02.prod.outlook.com (20.177.230.150) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.1643.18; Wed, 27 Feb 2019 22:19:33 +0000
Received: from BYAPR02MB5190.namprd02.prod.outlook.com ([fe80::d4e7:ce1a:9ae0:d53]) by BYAPR02MB5190.namprd02.prod.outlook.com ([fe80::d4e7:ce1a:9ae0:d53%3]) with mapi id 15.20.1643.019; Wed, 27 Feb 2019 22:19:33 +0000
From: "Michael J. Sheldon" <msheldon@godaddy.com>
To: "Brotman, Alexander" <Alexander_Brotman@comcast.com>, "art@ietf.org" <art@ietf.org>, "dbound@ietf.org" <dbound@ietf.org>
CC: "dnsop@ietf.org" <dnsop@ietf.org>, Stephen Farrell <stephen.farrell@cs.tcd.ie>
Thread-Topic: [DNSOP] Related Domains By DNS (RDBD) Draft
Thread-Index: AdTNSNgC8Q46/YWfTPCiSrkXJ1OYgQBoaqiA
Date: Wed, 27 Feb 2019 22:19:33 +0000
Message-ID: <e7164475-8289-91dd-a5ae-e0f043e2e347@godaddy.com>
References: <5de9ba1c3ae34edb9c7f39e0e9c3b143@PACDCEX19.cable.comcast.com>
In-Reply-To: <5de9ba1c3ae34edb9c7f39e0e9c3b143@PACDCEX19.cable.comcast.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [2600:8800:2800:8db:6a6e:1d88:205:32e2]
x-clientproxiedby: BYAPR08CA0051.namprd08.prod.outlook.com (2603:10b6:a03:117::28) To BYAPR02MB5190.namprd02.prod.outlook.com (2603:10b6:a03:68::15)
authentication-results: spf=none (sender IP is ) smtp.mailfrom=msheldon@godaddy.com;
x-ms-exchange-messagesentrepresentingtype: 1
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 71997c7f-9c80-4a02-3407-08d69d01a65b
x-ms-office365-filtering-ht: Tenant
x-microsoft-antispam: BCL:0; PCL:0; RULEID:(2390118)(7020095)(4652040)(8989299)(4534185)(4627221)(201703031133081)(201702281549075)(8990200)(5600127)(711020)(4605104)(4618075)(2017052603328)(7153060)(7193020); SRVR:BYAPR02MB5672;
x-ms-traffictypediagnostic: BYAPR02MB5672:
x-ms-exchange-purlcount: 2
x-microsoft-exchange-diagnostics: 1;BYAPR02MB5672;23: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
x-microsoft-antispam-prvs: <BYAPR02MB5672A7E689DAC9017CFD8535DB740@BYAPR02MB5672.namprd02.prod.outlook.com>
x-forefront-prvs: 0961DF5286
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(136003)(39860400002)(346002)(366004)(376002)(396003)(189003)(199004)(6486002)(31686004)(6436002)(6512007)(6306002)(2906002)(99286004)(110136005)(54906003)(71200400001)(71190400001)(2616005)(4326008)(486006)(25786009)(476003)(478600001)(14444005)(316002)(296002)(256004)(11346002)(966005)(14454004)(86362001)(46003)(52116002)(305945005)(106356001)(97736004)(7736002)(36756003)(446003)(6116002)(68736007)(2201001)(105586002)(229853002)(53936002)(2501003)(386003)(6506007)(81156014)(8936002)(8676002)(81166006)(102836004)(31696002)(5660300002)(76176011)(6246003)(186003)(53546011); DIR:OUT; SFP:1102; SCL:1; SRVR:BYAPR02MB5672; H:BYAPR02MB5190.namprd02.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; MX:1; A:1;
received-spf: None (protection.outlook.com: godaddy.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam-message-info: 5UGZyNP9RQSaEv8ffBec9AXJIWe3n8jAL+hoE8uLmAqG2sjh/ElGsDgRUpRWRDNwRPnfLS4lhFhL4bJnUhXaEfysV4Itub3qpc1kk4Cyg9ejCHF346ToL9Qy0+H935GyJxYusj2bk9j07HawKUq2CIinF0YsivPJhsLvFtDOLDwjLHcwHNpRRHlvvuOh3xY3IDYDL++RTSFuAtqjwuZ/fJNo4SiMx3D4YwnQNaLYYFW+WxseBWGEBj6+xeykmnVafGUGYGJbny3CHf1dz1g5LIGHRCXYsomfX5LAEprA7JfxFqVKP2NslSod8JiWYs9CYu2QMxvvZeGo3q1YBdRdGXnARdBUt7Y1QIMl0O/hG11Bbi5p5akfyOkOrdQm6TTHKK0wV8CtEHtVRXGCMtYn7JO5/ffLYkLMFE+NRlFAJ9k=
Content-Type: text/plain; charset="utf-8"
Content-ID: <E7811A1362ED3A479911CC1DD230087C@namprd02.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: godaddy.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 71997c7f-9c80-4a02-3407-08d69d01a65b
X-MS-Exchange-CrossTenant-originalarrivaltime: 27 Feb 2019 22:19:32.8925 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-id: d5f1622b-14a3-45a6-b069-003f8dc4851f
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BYAPR02MB5672
Archived-At: <https://mailarchive.ietf.org/arch/msg/dbound/Foa1JU5ZFCq8V-UgiFTWXy8ZH-I>
Subject: Re: [dbound] [DNSOP] Related Domains By DNS (RDBD) Draft
X-BeenThere: dbound@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: DNS tree bounds <dbound.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dbound>, <mailto:dbound-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dbound/>
List-Post: <mailto:dbound@ietf.org>
List-Help: <mailto:dbound-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dbound>, <mailto:dbound-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 27 Feb 2019 22:19:39 -0000

Section 1:

Current issues #1 says "use TXT or new RR?  (ATB: new RR, but TXT for now)"

Is there a single person here who believes this? Once implemented as
TXT, I give the odds of seeing a specific type record being implemented
as less than zero. Pick one, don't tease.

Section 2:

I am vehemently against adding yet another large TXT record at the apex
of zones. Everybody and their brother wants to jam something there. We
are polluting the apex to such a point that it will no longer be
possible to answer TXT queries via UDP even with EDNS. If you MUST use
TXT, please prefix the name with an application-specific value.

On 2/25/19 1:38 PM, Brotman, Alexander wrote:
> Hello,
> 
> Stephen and I have spent a bit of time working on a draft to be able to show a relationship between two domains.  We're aware this subject has been covered a few times previously, especially in the DBOUND drafts, but we're hopeful that a more simple approach might be more acceptable.   The secondary domain will create a DNS record that shows a link to a primary domain, and the text should be able to be validated using the public key in a DNS record the primary domain shares.  This is something akin to DKIM, a mechanism that the email world uses to ensure the contents of a message have not been tampered with.
> 
> https://datatracker.ietf.org/doc/draft-brotman-rdbd/
> 
> We'll request that replies relating to this be sent to the dbound@ietf.org due to the nature of the topic, but it was suggested that we might want to notify a few other lists for their awareness.  Thank you for your participation and comments.
> 
> --
> Alex Brotman
> Sr. Engineer, Anti-Abuse & Messaging Policy
> Comcast
> 
> _______________________________________________
> DNSOP mailing list
> DNSOP@ietf.org
> https://www.ietf.org/mailman/listinfo/dnsop
> 

-- 
Michael Sheldon
Dev-DNS Services
GoDaddy.com