Re: [dns-privacy] Operating System API support for DNS security policy

Brian Haberman <brian@innovationslab.net> Wed, 21 August 2019 12:06 UTC

Return-Path: <brian@innovationslab.net>
X-Original-To: dns-privacy@ietfa.amsl.com
Delivered-To: dns-privacy@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2EE011200F8 for <dns-privacy@ietfa.amsl.com>; Wed, 21 Aug 2019 05:06:41 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.898
X-Spam-Level:
X-Spam-Status: No, score=-1.898 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_NONE=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=innovationslab-net.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id gww_xM4jrr-R for <dns-privacy@ietfa.amsl.com>; Wed, 21 Aug 2019 05:06:39 -0700 (PDT)
Received: from mail-qt1-x836.google.com (mail-qt1-x836.google.com [IPv6:2607:f8b0:4864:20::836]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8D7BB12001A for <dns-privacy@ietf.org>; Wed, 21 Aug 2019 05:06:39 -0700 (PDT)
Received: by mail-qt1-x836.google.com with SMTP id b11so2641832qtp.10 for <dns-privacy@ietf.org>; Wed, 21 Aug 2019 05:06:39 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=innovationslab-net.20150623.gappssmtp.com; s=20150623; h=to:references:from:openpgp:autocrypt:subject:message-id:date :user-agent:mime-version:in-reply-to; bh=fitQI4ZCglyz5r6PshDT1ipY9vSEX6onYQCKXW1DY7I=; b=ia7ARsrSM6XqbrkPlZB4XWmLZUNdwZJxbInhICMIkGUCz0A6JqXT/nCA/HsNXzbrc0 1pn5K6RWuctsxHHmGpxOO/+oLO1oWCvMULjtKpYf/3BFJDLQVjVLH/Dl8S9R6nkXc7iP 9Hfp0wZ4uDQA+6iyrYBbdCj5Fs+JRZ9KWhTgsXgMjWI4fv6tbxp2N9JVY5xKSBQ8DqOo RyFyDzOU2suHlwPr4js1C96bspNvxHRhvcdDMUO0uimpSHHQAZvs4G0L5VG8yFtHtdgQ OhjLDcbhA4Vbg3amsZfGB3BCO4iC9fahSUqOGKt2QeQftQNf3WqQU7J98ocUrPmVn8zh KlGQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:to:references:from:openpgp:autocrypt:subject :message-id:date:user-agent:mime-version:in-reply-to; bh=fitQI4ZCglyz5r6PshDT1ipY9vSEX6onYQCKXW1DY7I=; b=R3eVN1KvfIBgupFBM/EEluky/8pU4JXknZ2dg0qby2NKMxSm595N05C+DMq9Du09lG OHkk4M2kogI6Py9DgxYX0XfawIJMydAJ5jQhV2GNOQhWbeWB/dWppGmje9lJGt/PSF3D LtcjF1vhqvUS1fUj8GLkhiv5ESARnGdQAfmGXeMQYuReuPRWKyYkc2gjth6sa83XLko5 m0LIrqTm9RJH/Tz4opjdIyVtlio18awlzvivheYIxPIE6LnQAMMt5XZ8TBtbBTBUm20c 9Dp2nBaFbh3MYp/SmZYSNfvhDHlsJi4uGVV+rreJetmhNNEXID4rRXvhC/VawTRgG3i4 ucwQ==
X-Gm-Message-State: APjAAAWHn1+seUclYbtm91uY0aQwJfEa0dbTNpgBbMXIODp5tw1DoQnc IqbycXqIaqOuIrzpmKNwKtK9sGwl4GQ=
X-Google-Smtp-Source: APXvYqwK+pwXlE0OXyhl8Pxrj3agntIY9GiDtY45+fM+eV+zRDxbXPVktgTG6zDcCMDyCKpxscQo+g==
X-Received: by 2002:ac8:14f:: with SMTP id f15mr31903482qtg.295.1566389197841; Wed, 21 Aug 2019 05:06:37 -0700 (PDT)
Received: from clemson.local (nat-gwifi.jhuapl.edu. [128.244.87.132]) by smtp.gmail.com with ESMTPSA id k25sm11189016qta.78.2019.08.21.05.06.36 for <dns-privacy@ietf.org> (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Wed, 21 Aug 2019 05:06:36 -0700 (PDT)
To: dns-privacy@ietf.org
References: <CAChr6Szutd5Z=Ern4qaGuGq+jMm3_xG57TKLfjkA-7FXWk5qWA@mail.gmail.com> <3112C3A8-C034-4975-A7E8-29EAD9C1478E@isc.org> <CAChr6SzmKaOoOag9ajXkShEYSHz-fSA+MG2VkiXjDVrWUx94PQ@mail.gmail.com> <MN2PR10MB40464D737A0E7B70C4185C9FB0AA0@MN2PR10MB4046.namprd10.prod.outlook.com>
From: Brian Haberman <brian@innovationslab.net>
Openpgp: preference=signencrypt
Autocrypt: addr=brian@innovationslab.net; keydata= mQINBFm5KgYBEACs2icafejrG19L5DRNFq8Q2O+K+LRxjR4qAElZDnXFXNA2ipFWPeT0J2wa KJ+h9UdfhDm8DzULB553CYm+Q3XF1N56TglkIRMZYc7mYXZEr3x7e4fmX4kD4qMjBLG8cL26 rEe3Q0qaiMGY69/4o5coVMT0qmHjgCH1tkG+L2Y8MKr1gFxS18eO8MVoWe1yDKuyxFSElHGB 3mZn4gcqeCaemPGG3CiVNlp4KnijpNcSgvseXbkQEA4IXEsIvUL8MIwOTXg9Gh5cbtisZpuf +4B0LNMUSqWlqyKd9M3KCMj+dW4vsFytc00Z+GyQ+ArOR9GwTdAwJ5qqVODTvbjKqOR1zolJ 1JxLUtSiv7Lx5x2OrCexPYXkzlTkjG9Imtg2XNh55R/JKMC3KU1NQL3nS9tJXeoRWNgWSZrG MsrbeejbqLVb9LblXNpgLciJ96XHMvYAXX7p4LAwivzSRrVg46vErYIAV6EvDvwVENWW8JCU 0vX5iTGfkEwU4KxCa7WAmmD8yiNspHP1J0uk93Sta5K0PuTi7b+EZlCjdrqOEWLGPv6qXlIu FwLLcCaDs3XdVvwgNM+UFRxFH1aOVQQKCiCOCcNlwgYG1u4ZbD2T6hd/d2tOAKu/MNnQVF7d Cfi2BtSjzglLcY61e37zqTM04BgU+LniZ7V99yneM6DM2UzgkwARAQABtClCcmlhbiBIYWJl cm1hbiA8YnJpYW5AaW5ub3ZhdGlvbnNsYWIubmV0PokCQAQTAQoAKgIbAwUJB4YfgAULCQgH AwUVCgkICwUWAgMBAAIeAQIXgAUCWbkqSAIZAQAKCRBo1jycU9GLYQixD/9UX0uiAvbJ+4dK z3Ne3kUdDK0Lk73RGfFgE/ezsc9I6ED82h+arC8pAoDnBWgzTxugZdbexek983bgMq02XFsG pJf7hudeKnB8UmtjTc0j1UUgi129FYyBmINS2Lz1gpEOygFfbeOGLJK5qZJwD3I3O6yN8SUZ uwahXXd1aEB+d1eGhNqxkjQ+L7vdfTlN662GWog3ROMwUbrg0+QAbn/Vlp2iIYO6VERUZ9Yr GfFJX9b9LKa6AHxzAaqFIix1h2wBiIacpIBGU/4+3+wL5zkCbGSRzoIHW8srllj7ehgwwfNx QevibuZWJ4XpHpIxrtsmBO7ERFk8pN7oiQ9M3b2Cg9OBD5vgxyMCHEKIblWyKz8GLtz5357L ORU1EBWB8BoJPBHz3u7bZE+jH9+w5PpI087Ae78KCDkTNj7o2wbkRoYLmLpMo8DOwAumyy5R 2DuRu0cn5Rw5pFjlJkyfM0Wf80Ml/SINrUORWeqSbsHSX8i+Y0Oyt5JNo9NFbgN0Gn/Qo364 I8cLgbvUAyFHwhnmbHB+QXFCGAy73NOQ+g2fCRPeSbihhYa34ugfmd4oa6W2w805ixzM7iGr P+wDB1dhA7eHKVmoo9Kxvm9VzU+2homYGEROd/H6n0BMvWtp1oFh/JvEgZN6dVLg3p+XX5Zj Ggy568bIY4P5kP7pAxh017kCDQRZuSoGARAAtCWxW1cRne/iGbFuibvB8d3upcbCB7oz4LWk LSE20Db2ymn04ici9V+wBSWX57me5jQdwMi/gzVVZcupbzWTg5Yhv7Qt7CKORJLEKo6nULbb 4aEpdOXD9s7wwx+foFjzjtDOH/JYoB+OEe2oW39VmK6EsIx7ClsLf6+cih5yApZHtmV+2M3J YSxD2kCUE619ITFLAkMf203ap5vJ6DDaaKnVoNhF9qV7jlJEceGqHTBG4KkBX/zNCehMIfhr ViY/B2IWAHeuZ99lnCPx2mehGGa4XLjQauUkY9KB7dOq/ODyt+7SL0dfWrOVf3BnU3C308b4 9YdId8KI4dJ30nfXn6ifTK9STZHZE+Mt1sIVmtEguqMXEk/axZmT14x194c7ZPmU/uCQTE3U y1NFs4Yof50WF1ze0CyN2ycmqx11mHjP5+L23TqcdIWmJG+EtdHUAFpu42kbB0fML3Oc/cEU SmWK3WpF5YPljLM2gyh3RXjuiBnaGoJaKTOj5zXQ2G2l3/ijbn9FbqmFup+R352dxUyakXEP xNe3HdyjfyUcy/RJNeZz/lgUIhkxWQjOOU1RIN41RtCKcF9tJjMwgQvI51QmPvf90/6ab3I/ vwEpjlRb4AbuWfPWe89J+Z3TG97V9sntlMcQ6MGiPLbyFpiXIf2150e6FxZdJtipVwY2d/kA EQEAAYkCJQQYAQoADwUCWbkqBgIbDAUJB4YfgAAKCRBo1jycU9GLYfy0EACYrxb4nWtOnIu0 N7rXXo/0ZjaBTyUhJ6hzy2D7rt3vv/qj2ui+N21ui/yMDS928za/XRfP25qN9A1puioHqN4l SAsxwCC3mT9GJXVXVgivg3MeciqBXoOdnk1hUkP1CTKL3qZ9pSuw8bPlNE7+b1xF7Oce37YH +QRVmBXbGwTxtDTCZ9Js0/IpiUtg9QCfmryB1r/fD0TFb8b9aCBuVeKocWSuX9UXRt7zRGM8 BJwOLvdLdGvV8us1imlBKFLai4L8CPgihuc/s7ZB0r3pgW697hXScWhGHF3OUWbPFVkNyivM xtDcq+9ZlUMrxFbwUEABi8NFwvzwn+YJQqlrPiF4xxsScYpnIlfWEuP6Vpp6Z/u5x+1MNyZb oxNWWaevMVeo3tdRV9F6/YFqucw4JQ9HqlCKQ62sW9+e5SSlxGNlV4j9cchG6a4fAZqxL+pS ks+KitK3ap/R4RUG+nbjLlhCwGJIti8lxvdYAoPqjtwEUmMJv4dIl0/2h1495cwBIi7XeRKZ Rx38TV3G3LCx0J8dFhkyTG5TxUZQFgHjznkIX7bzeSQX72MxT0b/tc38yM71WpAgAY+MlHCT FQRKqIQsH/4MFir+g/oV2uPNGwmg0QEOnv9zZ79JJ/nBmuXC2RwUVTtZgtiZXhaP0afvR0eg WPEzptIZZCSmtBOOYkfsAw==
Message-ID: <4405fb2e-8ad4-902a-2a04-da96216b7eff@innovationslab.net>
Date: Wed, 21 Aug 2019 08:06:35 -0400
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.14; rv:60.0) Gecko/20100101 Thunderbird/60.8.0
MIME-Version: 1.0
In-Reply-To: <MN2PR10MB40464D737A0E7B70C4185C9FB0AA0@MN2PR10MB4046.namprd10.prod.outlook.com>
Content-Type: multipart/signed; micalg="pgp-sha256"; protocol="application/pgp-signature"; boundary="LIwfOFMBKrPDAruFkkBrJr05T8U7F0VAk"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dns-privacy/ATxeUHBKpef27mvOjJypYigSK3o>
Subject: Re: [dns-privacy] Operating System API support for DNS security policy
X-BeenThere: dns-privacy@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: <dns-privacy.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dns-privacy/>
List-Post: <mailto:dns-privacy@ietf.org>
List-Help: <mailto:dns-privacy-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 21 Aug 2019 12:06:41 -0000

Hi Iain,

On 8/21/19 4:28 AM, Iain Sharp wrote:
> Yes, I would be interested if someone can explain the relationship between Posix and IETF in this regard, and why the information appears in two places. It is something that is unclear to me.
> 

It is a bit of a convoluted relationship. Generally, POSIX deals with
defining the APIs for UNIX OSes. Part of that involves defining the APIs
related to networking (e.g., socket(), getaddrinfo(), ...).

The IETF has published a number of "API" RFCs that describe enhancements
that the IETF community would like to see in the POSIX suite of APIs.
Once the IETF has agreed to those enhancements and published an RFC, the
advocates for those APIs then engage with the OpenGroup to try and get
them to take up the standardization of those new/updated APIs. In some
cases, they do and in others, they don't. The advanced socket API for
IPv6 is a good example of the latter.

I view any API defined by the IETF as an "informational" request to the
OpenGroup to standardize an API with the documented capabilities. What I
don't understand is why the IETF does not have a liaison relationship
with the OpenGroup to facilitate the development of the appropriate APIs
for the technologies defined in the IETF. That is a question better
suited for someone on the IAB.

Not sure if that clarifies things or not...

Regards,
Brian