[dns-privacy] FYI: Oblivious HTTP

Martin Thomson <mt@lowentropy.net> Thu, 28 January 2021 01:29 UTC

Return-Path: <mt@lowentropy.net>
X-Original-To: dns-privacy@ietfa.amsl.com
Delivered-To: dns-privacy@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A58113A1178; Wed, 27 Jan 2021 17:29:25 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.12
X-Spam-Level:
X-Spam-Status: No, score=-2.12 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=lowentropy.net header.b=kWQJbsmv; dkim=pass (2048-bit key) header.d=messagingengine.com header.b=RuxLUaNf
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 4ER2Oj1BvMFI; Wed, 27 Jan 2021 17:29:24 -0800 (PST)
Received: from out5-smtp.messagingengine.com (out5-smtp.messagingengine.com [66.111.4.29]) (using TLSv1.2 with cipher ADH-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5B1983A1318; Wed, 27 Jan 2021 17:29:00 -0800 (PST)
Received: from compute1.internal (compute1.nyi.internal [10.202.2.41]) by mailout.nyi.internal (Postfix) with ESMTP id 9AADB5C0235; Wed, 27 Jan 2021 20:28:59 -0500 (EST)
Received: from imap10 ([10.202.2.60]) by compute1.internal (MEProxy); Wed, 27 Jan 2021 20:28:59 -0500
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=lowentropy.net; h=mime-version:message-id:date:from:to:subject:content-type; s= fm1; bh=2fgE7w7pTkmfNPZ0FDlCguRCeHcqNR38yzOgDMhRwkY=; b=kWQJbsmv JojopVuRLpare3eHbfND5dRR14j3Nbb9w53pON5B6prDy2pckKo2wLL4D4Up4Xi/ 0nE1R72lV4i2DxbM0yGZmfRxgtyrF4/1qQ+totouLZP2ncGoSknQqKZiKcZU9tJs tScjls+gZcosQtvWNYE08IvjZz6Ck4UWgiMTVhIKJP+VzQM/4fgrr1OxZvIVGg5H X8+yEondyvVOvjKrcwQkmKlRo1qG3RCzxh3SJOV7SWIv+whScvFjofNvPkQgp0rF Nn+vCsine+yYHH/As1z6Fton3AI6eKCDXQVvzQ8qv3yKO7+IGZY5u9zy/kzVHkPV eq2X+SHlgtOIKA==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=content-type:date:from:message-id :mime-version:subject:to:x-me-proxy:x-me-proxy:x-me-sender :x-me-sender:x-sasl-enc; s=fm1; bh=2fgE7w7pTkmfNPZ0FDlCguRCeHcqN R38yzOgDMhRwkY=; b=RuxLUaNffGQNFqT2YLIEonvL42Bsv4x7+Euql3Ar8QaQs ii+lL45uKccp7i4AChx5gkJWBju1skmyJo8d+dy1Lbb6BMKUeM8w3sHSy2y57PiN FGSrH/cPRGLN2uD2LVquQry4FnTQ9BfC37rDLmd2aAWicFYjbhDblMIgjaZEF+79 VwOOPpOc9ng3PYZKe5bhL2enpX0vMWO6dzXKZk/4Dsq326Z4naMa9I/SDPpOoO7t dJjZkRIMbEo0M2pfONbdkbLSy5CEMKXwptKFmWXpd0zc+0vjy+gcznU9C7X35FN+ PLkrU16dfSYuaYxlgd9yBC10Tzk6BynullWmt3Shg==
X-ME-Sender: <xms:WxMSYO71R2qdfeBjasSSet57eR8TJkms14dRTZ2WS4AtazVSeeG8-A> <xme:WxMSYH6m9UpsTuKPMF-siNBjr-w5KLFVUNe-kYg5G9JuAp97_K5dJXD2C01j_H3Dx 9TwH9YR816CXBUT_-g>
X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgeduledrvdelgdeffecutefuodetggdotefrodftvf curfhrohhfihhlvgemucfhrghsthforghilhdpqfgfvfdpuffrtefokffrpgfnqfghnecu uegrihhlohhuthemuceftddtnecunecujfgurhepofgfggfkfffhvffutgesthdtredtre ertdenucfhrhhomhepfdforghrthhinhcuvfhhohhmshhonhdfuceomhhtsehlohifvghn thhrohhphidrnhgvtheqnecuggftrfgrthhtvghrnhepgfehieeggfeileekhfdthfdtff egjeffvdekudffgfeltddujefhieeihffhveegnecuffhomhgrihhnpehivghtfhdrohhr ghenucevlhhushhtvghrufhiiigvpedunecurfgrrhgrmhepmhgrihhlfhhrohhmpehmth eslhhofigvnhhtrhhophihrdhnvght
X-ME-Proxy: <xmx:WxMSYNdvtVUJn6bH5x3gXMrUksSCGIUFp8s3Wk-m498vmpfj26cDNA> <xmx:WxMSYLI001G8jz50Blm9hMYKO5UpueqvGER10rwUycdWhaiqZex8cw> <xmx:WxMSYCIgocQz_pnWRS474NXVFcUwkSXS5GLQ2wNw6MIdlnSCLtFRHA> <xmx:WxMSYBnrDP7en-aObBPTchCLDRpO4hBHZPiXDu2wiNz1iwfP1vr78A>
Received: by mailuser.nyi.internal (Postfix, from userid 501) id 75A4B4E0063; Wed, 27 Jan 2021 20:28:59 -0500 (EST)
X-Mailer: MessagingEngine.com Webmail Interface
User-Agent: Cyrus-JMAP/3.5.0-alpha0-84-gfc141fe8b8-fm-20210125.001-gfc141fe8
Mime-Version: 1.0
Message-Id: <e5906e75-c40e-4bc7-95b5-a85135773489@www.fastmail.com>
Date: Thu, 28 Jan 2021 12:28:39 +1100
From: Martin Thomson <mt@lowentropy.net>
To: add@ietf.org, dns-privacy@ietf.org
Content-Type: text/plain
Archived-At: <https://mailarchive.ietf.org/arch/msg/dns-privacy/8mQeiYUNp_KXywrtKk3XqY51W5w>
Subject: [dns-privacy] FYI: Oblivious HTTP
X-BeenThere: dns-privacy@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: <dns-privacy.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dns-privacy/>
List-Post: <mailto:dns-privacy@ietf.org>
List-Help: <mailto:dns-privacy-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 28 Jan 2021 01:29:32 -0000

Those who are following the discussion on oblivious DNS and oblivious DoH might be interested in a draft just posted:

https://www.ietf.org/archive/id/draft-thomson-http-oblivious-00.html

We're asking this to be dispatched in SECDISPATCH, so any thoughts you might have about venue should be taken up in this thread [1].

The goal is to provide a generic layer that can be used by things like Oblivious DoH.  DPRIVE might be interested in the applicability of the mechanism to an in-DNS-protocol design, or maybe might be interested in discussing some of the proposed differences in design approach with [2].

This doesn't (yet) include any substantive material on discovery of the various functions here, which might be of interest to ADD.  Some work on that is possible, but my personal view is that that would depend on getting clarity about requirements.

[1] https://mailarchive.ietf.org/arch/msg/secdispatch/VmFQCZGKlukgfnmgPh8ufQt_5Fo/
[2] https://datatracker.ietf.org/doc/html/draft-annee-dprive-oblivious-dns-00