Re: [dns-privacy] Call for Adoption: draft-hal-adot-operational-considerations

"Henderson, Karl" <khenderson@verisign.com> Thu, 15 August 2019 19:24 UTC

Return-Path: <khenderson@verisign.com>
X-Original-To: dns-privacy@ietfa.amsl.com
Delivered-To: dns-privacy@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9A1101200B2 for <dns-privacy@ietfa.amsl.com>; Thu, 15 Aug 2019 12:24:39 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.739
X-Spam-Level:
X-Spam-Status: No, score=-1.739 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, HTML_OBFUSCATE_05_10=0.26, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=verisign.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id KIjlBE8It1y5 for <dns-privacy@ietfa.amsl.com>; Thu, 15 Aug 2019 12:24:37 -0700 (PDT)
Received: from mail6.verisign.com (mail6.verisign.com [69.58.187.32]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4D77B120074 for <dns-privacy@ietf.org>; Thu, 15 Aug 2019 12:24:37 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=verisign.com; l=3947; q=dns/txt; s=VRSN; t=1565897077; h=from:to:date:message-id:mime-version:subject; bh=mxvDXE/Td25fQIZ1AsKT1/avHQ7JWUVGe8qVVpwjykU=; b=bjubLXZpL4pm7wfCNqj/DabhzAk8V6JIp7AaT+WKlukvQ5HCY3FzxpGh SFwzyoZsNFl5ExnBfMnIRnlgX4JEUle9XA/FDBI14Oac2aIJWd08QTmyE HQEOSLyOkk3mufc3AKj5E1kmdG+5rwfiSlR/ysofPK8YiFsxS2Khs/xtY pJKngc33QIhRH73t3dmumkkEO2b0pGfYA//Y9C0h0Y53O3WhYsRQEcl+5 gJ1gTbbCNKzxhN+1IXIK7jpQ+vD05LbCwtdyczn5jmK+1gf27Q5GnrSVR L0TfRV8rPEomCDi5pwoiO0jk5AO0m4RzZokuZpQsbMOUNinNUxN4yCiyr Q==;
X-IronPort-AV: E=Sophos;i="5.64,389,1559534400"; d="scan'208,217";a="8179396"
IronPort-PHdr: 9a23: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
X-IPAS-Result: A2GABAD7r1Vd/zGZrQplHAEBAQQBAQcEAQGBZ4EWgW+BOIQVjlyCGoQNlyQJAQEBAQEBAQEBBwETEAwBAQKEVoMhOBMCBAEBAQQBAQEDAQYDAQEBAoYQDII6IhxNawEBAQEBASMCRC0GHQZoAQYCBD4CBDAnBAGDNAGBHXyOOZtugTKENwKFewaBNIwAgUE+gTgME4JMPoJhAQEDhGkygiYEjxCFDpcvAwYCgh2GZIR8iG6YPo1Xh1+QJQIEAgQFAhWBZ4F6cHoBgkKCeYhOhT+OeoEhAQE
Received: from BRN1WNEX02.vcorp.ad.vrsn.com (10.173.153.49) by BRN1WNEX02.vcorp.ad.vrsn.com (10.173.153.49) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256) id 15.1.1713.5; Thu, 15 Aug 2019 15:24:34 -0400
Received: from BRN1WNEX02.vcorp.ad.vrsn.com ([fe80::7c0a:1cc:5def:9dde]) by BRN1WNEX02.vcorp.ad.vrsn.com ([fe80::7c0a:1cc:5def:9dde%4]) with mapi id 15.01.1713.004; Thu, 15 Aug 2019 15:24:34 -0400
From: "Henderson, Karl" <khenderson@verisign.com>
To: "dns-privacy@ietf.org" <dns-privacy@ietf.org>, "hmco@env.dtu.dk" <hmco@env.dtu.dk>, "bemasc@google.com" <bemasc@google.com>
Thread-Topic: [EXTERNAL] Re: [dns-privacy] Call for Adoption: draft-hal-adot-operational-considerations
Thread-Index: AQHVU58SC/DWNWAU8UCCDm20W3i8Hw==
Date: Thu, 15 Aug 2019 19:24:34 +0000
Message-ID: <FF129207-3034-4AF6-A2AD-5D6ADA55AE3A@verisign.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/10.10.c.190715
x-originating-ip: [10.170.148.18]
Content-Type: multipart/alternative; boundary="_000_FF12920730344AF6A2AD5D6ADA55AE3Averisigncom_"
MIME-Version: 1.0
Archived-At: <https://mailarchive.ietf.org/arch/msg/dns-privacy/Aei_QKHODM3I0565sn9fc40zTA0>
Subject: Re: [dns-privacy] Call for Adoption: draft-hal-adot-operational-considerations
X-BeenThere: dns-privacy@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: <dns-privacy.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dns-privacy/>
List-Post: <mailto:dns-privacy@ietf.org>
List-Help: <mailto:dns-privacy-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 15 Aug 2019 19:24:40 -0000

To be clear, ADoT is not a new standard. This is simply DNS over TLS as specified in RFC7858, further defined as ADoT in https://tools.ietf.org/html/draft-hoffman-dns-terminology-ter-02, and again in this draft in the introduction “…this document's scope is the recursive-to-authoritative aspect of DoT, or Authoritative DNS over TLS (ADoT), in order to differentiate it from the stub-to-recursive path”