Re: [dns-privacy] BCP 232, RFC 8932 on Recommendations for DNS Privacy Service Operators

Brian Haberman <brian@innovationslab.net> Mon, 26 October 2020 11:41 UTC

Return-Path: <brian@innovationslab.net>
X-Original-To: dns-privacy@ietfa.amsl.com
Delivered-To: dns-privacy@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5134F3A045E for <dns-privacy@ietfa.amsl.com>; Mon, 26 Oct 2020 04:41:00 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.144
X-Spam-Level:
X-Spam-Status: No, score=-2.144 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, NICE_REPLY_A=-0.247, SPF_HELO_NONE=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=innovationslab-net.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id pWWE0DeGZv70 for <dns-privacy@ietfa.amsl.com>; Mon, 26 Oct 2020 04:40:57 -0700 (PDT)
Received: from mail-qv1-xf2a.google.com (mail-qv1-xf2a.google.com [IPv6:2607:f8b0:4864:20::f2a]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8D9AC3A0400 for <dns-privacy@ietf.org>; Mon, 26 Oct 2020 04:40:57 -0700 (PDT)
Received: by mail-qv1-xf2a.google.com with SMTP id w5so4065431qvn.12 for <dns-privacy@ietf.org>; Mon, 26 Oct 2020 04:40:57 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=innovationslab-net.20150623.gappssmtp.com; s=20150623; h=subject:to:references:from:autocrypt:message-id:date:user-agent :mime-version:in-reply-to; bh=/b38IrXNLLesg8LKohd05yS4sCsxH3evIMVndqmknrc=; b=hcefsiYXlvobKs7XRoeGZNzyYkGqy3FBoeqBi2jisLwAr72r+HwrENS/vbsON6xIHJ b+xLVwfYbyUmNckJaPI2WSpxmnkHHVTvYvzzkZZCQmdsCPtWU2bp90nAppXSsRaZ58oB dWdA+SCDgbZqssqIm0lEZDUVUfn1piQ48QByE8ADt3IAyBUXskCoFEA5UrYAs8VrvJcy GLs/BmVWHHtVYpWnJ3xEhPQAGpadC4HsmtI1xkPdbyluOkxJ4rcRUSSvP+iAa/hnV6gt Fu2m9A6nJ5jESm1LI/1bZIpOWenB0iHafbXOOQj8i1yRfHZZ8l5ERRuc+FPutnJY3zDi RG5w==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:subject:to:references:from:autocrypt:message-id :date:user-agent:mime-version:in-reply-to; bh=/b38IrXNLLesg8LKohd05yS4sCsxH3evIMVndqmknrc=; b=KXL97lfNiwK/U4/R8kdBUSD9XcTV2fBKQHt7RJnSZ9BCqv40gVQ0k4ppc7JkJfb1+H wQkOS5uJ9o+rfZHw+2sDiPrR7dmuPL3voJO7vZu6YtQFaVR0qY12XfZ6l7ffWpOiJ2ZY BdacoXcRrNV9M0G2hIjNOd/kh32oV0QhRCjuG2RR/u57R4WbqvCz2hwrZWL/mcN8Dsyi QoCCjzvPACPtCmT/GTYxJ50zgMwj5fmAWTljAX+Xu7K9BZAVmyLZ4A4jLR6bIeKQjA+o Oc0+HFU2PE2n784uE2XjCYQ4oC0ilVWe2oxV+kYxR6ESGRI4Du6DkuJFkjuHVWSbZ+Pb 8yyw==
X-Gm-Message-State: AOAM530odQWxP2qzWR98mak6L4tp89pPjxFQOwKotcsyiBcohIbKiGqP zswyAYq7aoy43jTUpkTMlQ5DmXMV1uk5dIDt
X-Google-Smtp-Source: ABdhPJy2FCZWwr//+1Y72u8r2d5X0okUgkXHexfXbVxA2FHxpQuj2mUlv3a6DRe6HC7xZx6vciRfZw==
X-Received: by 2002:ad4:4b2a:: with SMTP id s10mr13905433qvw.54.1603712456072; Mon, 26 Oct 2020 04:40:56 -0700 (PDT)
Received: from LakeHartwell.local ([2601:154:c001:f99e:84e7:76a5:5570:9f59]) by smtp.gmail.com with ESMTPSA id 22sm4189092qtw.61.2020.10.26.04.40.55 for <dns-privacy@ietf.org> (version=TLS1_3 cipher=TLS_AES_128_GCM_SHA256 bits=128/128); Mon, 26 Oct 2020 04:40:55 -0700 (PDT)
To: dns-privacy@ietf.org
References: <20201023214546.BFFCFF4071A@rfc-editor.org>
From: Brian Haberman <brian@innovationslab.net>
Autocrypt: addr=brian@innovationslab.net; keydata= mQINBFm5KgYBEACs2icafejrG19L5DRNFq8Q2O+K+LRxjR4qAElZDnXFXNA2ipFWPeT0J2wa KJ+h9UdfhDm8DzULB553CYm+Q3XF1N56TglkIRMZYc7mYXZEr3x7e4fmX4kD4qMjBLG8cL26 rEe3Q0qaiMGY69/4o5coVMT0qmHjgCH1tkG+L2Y8MKr1gFxS18eO8MVoWe1yDKuyxFSElHGB 3mZn4gcqeCaemPGG3CiVNlp4KnijpNcSgvseXbkQEA4IXEsIvUL8MIwOTXg9Gh5cbtisZpuf +4B0LNMUSqWlqyKd9M3KCMj+dW4vsFytc00Z+GyQ+ArOR9GwTdAwJ5qqVODTvbjKqOR1zolJ 1JxLUtSiv7Lx5x2OrCexPYXkzlTkjG9Imtg2XNh55R/JKMC3KU1NQL3nS9tJXeoRWNgWSZrG MsrbeejbqLVb9LblXNpgLciJ96XHMvYAXX7p4LAwivzSRrVg46vErYIAV6EvDvwVENWW8JCU 0vX5iTGfkEwU4KxCa7WAmmD8yiNspHP1J0uk93Sta5K0PuTi7b+EZlCjdrqOEWLGPv6qXlIu FwLLcCaDs3XdVvwgNM+UFRxFH1aOVQQKCiCOCcNlwgYG1u4ZbD2T6hd/d2tOAKu/MNnQVF7d Cfi2BtSjzglLcY61e37zqTM04BgU+LniZ7V99yneM6DM2UzgkwARAQABtClCcmlhbiBIYWJl cm1hbiA8YnJpYW5AaW5ub3ZhdGlvbnNsYWIubmV0PokCQAQTAQoAKgIbAwUJB4YfgAULCQgH AwUVCgkICwUWAgMBAAIeAQIXgAUCWbkqSAIZAQAKCRBo1jycU9GLYQixD/9UX0uiAvbJ+4dK z3Ne3kUdDK0Lk73RGfFgE/ezsc9I6ED82h+arC8pAoDnBWgzTxugZdbexek983bgMq02XFsG pJf7hudeKnB8UmtjTc0j1UUgi129FYyBmINS2Lz1gpEOygFfbeOGLJK5qZJwD3I3O6yN8SUZ uwahXXd1aEB+d1eGhNqxkjQ+L7vdfTlN662GWog3ROMwUbrg0+QAbn/Vlp2iIYO6VERUZ9Yr GfFJX9b9LKa6AHxzAaqFIix1h2wBiIacpIBGU/4+3+wL5zkCbGSRzoIHW8srllj7ehgwwfNx QevibuZWJ4XpHpIxrtsmBO7ERFk8pN7oiQ9M3b2Cg9OBD5vgxyMCHEKIblWyKz8GLtz5357L ORU1EBWB8BoJPBHz3u7bZE+jH9+w5PpI087Ae78KCDkTNj7o2wbkRoYLmLpMo8DOwAumyy5R 2DuRu0cn5Rw5pFjlJkyfM0Wf80Ml/SINrUORWeqSbsHSX8i+Y0Oyt5JNo9NFbgN0Gn/Qo364 I8cLgbvUAyFHwhnmbHB+QXFCGAy73NOQ+g2fCRPeSbihhYa34ugfmd4oa6W2w805ixzM7iGr P+wDB1dhA7eHKVmoo9Kxvm9VzU+2homYGEROd/H6n0BMvWtp1oFh/JvEgZN6dVLg3p+XX5Zj Ggy568bIY4P5kP7pAxh017kCDQRZuSoGARAAtCWxW1cRne/iGbFuibvB8d3upcbCB7oz4LWk LSE20Db2ymn04ici9V+wBSWX57me5jQdwMi/gzVVZcupbzWTg5Yhv7Qt7CKORJLEKo6nULbb 4aEpdOXD9s7wwx+foFjzjtDOH/JYoB+OEe2oW39VmK6EsIx7ClsLf6+cih5yApZHtmV+2M3J YSxD2kCUE619ITFLAkMf203ap5vJ6DDaaKnVoNhF9qV7jlJEceGqHTBG4KkBX/zNCehMIfhr ViY/B2IWAHeuZ99lnCPx2mehGGa4XLjQauUkY9KB7dOq/ODyt+7SL0dfWrOVf3BnU3C308b4 9YdId8KI4dJ30nfXn6ifTK9STZHZE+Mt1sIVmtEguqMXEk/axZmT14x194c7ZPmU/uCQTE3U y1NFs4Yof50WF1ze0CyN2ycmqx11mHjP5+L23TqcdIWmJG+EtdHUAFpu42kbB0fML3Oc/cEU SmWK3WpF5YPljLM2gyh3RXjuiBnaGoJaKTOj5zXQ2G2l3/ijbn9FbqmFup+R352dxUyakXEP xNe3HdyjfyUcy/RJNeZz/lgUIhkxWQjOOU1RIN41RtCKcF9tJjMwgQvI51QmPvf90/6ab3I/ vwEpjlRb4AbuWfPWe89J+Z3TG97V9sntlMcQ6MGiPLbyFpiXIf2150e6FxZdJtipVwY2d/kA EQEAAYkCJQQYAQoADwUCWbkqBgIbDAUJB4YfgAAKCRBo1jycU9GLYfy0EACYrxb4nWtOnIu0 N7rXXo/0ZjaBTyUhJ6hzy2D7rt3vv/qj2ui+N21ui/yMDS928za/XRfP25qN9A1puioHqN4l SAsxwCC3mT9GJXVXVgivg3MeciqBXoOdnk1hUkP1CTKL3qZ9pSuw8bPlNE7+b1xF7Oce37YH +QRVmBXbGwTxtDTCZ9Js0/IpiUtg9QCfmryB1r/fD0TFb8b9aCBuVeKocWSuX9UXRt7zRGM8 BJwOLvdLdGvV8us1imlBKFLai4L8CPgihuc/s7ZB0r3pgW697hXScWhGHF3OUWbPFVkNyivM xtDcq+9ZlUMrxFbwUEABi8NFwvzwn+YJQqlrPiF4xxsScYpnIlfWEuP6Vpp6Z/u5x+1MNyZb oxNWWaevMVeo3tdRV9F6/YFqucw4JQ9HqlCKQ62sW9+e5SSlxGNlV4j9cchG6a4fAZqxL+pS ks+KitK3ap/R4RUG+nbjLlhCwGJIti8lxvdYAoPqjtwEUmMJv4dIl0/2h1495cwBIi7XeRKZ Rx38TV3G3LCx0J8dFhkyTG5TxUZQFgHjznkIX7bzeSQX72MxT0b/tc38yM71WpAgAY+MlHCT FQRKqIQsH/4MFir+g/oV2uPNGwmg0QEOnv9zZ79JJ/nBmuXC2RwUVTtZgtiZXhaP0afvR0eg WPEzptIZZCSmtBOOYkfsAw==
Message-ID: <5e52d63c-7197-049e-cf02-4e1e55e900bb@innovationslab.net>
Date: Mon, 26 Oct 2020 07:40:53 -0400
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:68.0) Gecko/20100101 Thunderbird/68.12.1
MIME-Version: 1.0
In-Reply-To: <20201023214546.BFFCFF4071A@rfc-editor.org>
Content-Type: multipart/signed; micalg="pgp-sha256"; protocol="application/pgp-signature"; boundary="9PaTkGlyMWORoMNkmKg1yO9r7mzfyTwku"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dns-privacy/3EI0y1Y36_D4Hg-szIQJQ85sZQs>
Subject: Re: [dns-privacy] BCP 232, RFC 8932 on Recommendations for DNS Privacy Service Operators
X-BeenThere: dns-privacy@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: <dns-privacy.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dns-privacy/>
List-Post: <mailto:dns-privacy@ietf.org>
List-Help: <mailto:dns-privacy-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 26 Oct 2020 11:41:00 -0000

A big "Thank You!" to the authors and the WG for the effort put into
getting this document published!

On 10/23/20 5:45 PM, rfc-editor@rfc-editor.org wrote:
> A new Request for Comments is now available in online RFC libraries.
> 
>         BCP 232        
>         RFC 8932
> 
>         Title:      Recommendations for DNS Privacy Service 
>                     Operators 
>         Author:     S. Dickinson,
>                     B. Overeinder,
>                     R. van Rijswijk-Deij,
>                     A. Mankin
>         Status:     Best Current Practice
>         Stream:     IETF
>         Date:       October 2020
>         Mailbox:    sara@sinodun.com, 
>                     benno@NLnetLabs.nl, 
>                     roland@nlnetlabs.nl,
>                     allison.mankin@gmail.com
>         Pages:      34
>         See Also:   BCP 232
> 
>         I-D Tag:    draft-ietf-dprive-bcp-op-14.txt
> 
>         URL:        https://www.rfc-editor.org/info/rfc8932
> 
>         DOI:        10.17487/RFC8932
> 
> This document presents operational, policy, and security
> considerations for DNS recursive resolver operators who choose to
> offer DNS privacy services.  With these recommendations, the operator
> can make deliberate decisions regarding which services to provide, as
> well as understanding how those decisions and the alternatives impact
> the privacy of users. 
> 
> This document also presents a non-normative framework to assist
> writers of a Recursive operator Privacy Statement, analogous to DNS
> Security Extensions (DNSSEC) Policies and DNSSEC Practice Statements
> described in RFC 6841.
> 
> This document is a product of the DNS PRIVate Exchange Working Group of the IETF.
> 
> 
> BCP: This document specifies an Internet Best Current Practices for the
> Internet Community, and requests discussion and suggestions for 
> improvements. Distribution of this memo is unlimited.
> 
> This announcement is sent to the IETF-Announce and rfc-dist lists.
> To subscribe or unsubscribe, see
>   https://www.ietf.org/mailman/listinfo/ietf-announce
>   https://mailman.rfc-editor.org/mailman/listinfo/rfc-dist
> 
> For searching the RFC series, see https://www.rfc-editor.org/search
> For downloading RFCs, see https://www.rfc-editor.org/retrieve/bulk
> 
> Requests for special distribution should be addressed to either the
> author of the RFC in question, or to rfc-editor@rfc-editor.org.  Unless
> specifically noted otherwise on the RFC itself, all RFCs are for
> unlimited distribution.
> 
> 
> The RFC Editor Team
> Association Management Solutions, LLC
> 
> 
> _______________________________________________
> dns-privacy mailing list
> dns-privacy@ietf.org
> https://www.ietf.org/mailman/listinfo/dns-privacy
>