[dns-privacy] Last Call: <draft-ietf-dprive-unilateral-probing-10.txt> (Unilateral Opportunistic Deployment of Encrypted Recursive-to-Authoritative DNS) to Experimental RFC
The IESG <iesg-secretary@ietf.org> Mon, 07 August 2023 23:06 UTC
Return-Path: <iesg-secretary@ietf.org>
X-Original-To: dns-privacy@ietf.org
Delivered-To: dns-privacy@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id EAB9BC15154E; Mon, 7 Aug 2023 16:06:59 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: The IESG <iesg-secretary@ietf.org>
To: IETF-Announce <ietf-announce@ietf.org>
X-Test-IDTracker: no
X-IETF-IDTracker: 11.5.0
Auto-Submitted: auto-generated
Precedence: bulk
CC: brian@innovationslab.net, dns-privacy@ietf.org, dprive-chairs@ietf.org, draft-ietf-dprive-unilateral-probing@ietf.org, evyncke@cisco.com, tjw.ietf@gmail.com
Reply-To: last-call@ietf.org
Sender: iesg-secretary@ietf.org
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
Message-ID: <169144961993.42060.16501930422442115387@ietfa.amsl.com>
Date: Mon, 07 Aug 2023 16:06:59 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/dns-privacy/_b8dgV4B4AnmRLnY_MPnkYOfvPI>
Subject: [dns-privacy] Last Call: <draft-ietf-dprive-unilateral-probing-10.txt> (Unilateral Opportunistic Deployment of Encrypted Recursive-to-Authoritative DNS) to Experimental RFC
X-BeenThere: dns-privacy@ietf.org
X-Mailman-Version: 2.1.39
List-Id: Addition of privacy to the DNS protocol <dns-privacy.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dns-privacy/>
List-Post: <mailto:dns-privacy@ietf.org>
List-Help: <mailto:dns-privacy-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 07 Aug 2023 23:07:00 -0000
The IESG has received a request from the DNS PRIVate Exchange WG (dprive) to consider the following document: - 'Unilateral Opportunistic Deployment of Encrypted Recursive-to-Authoritative DNS' <draft-ietf-dprive-unilateral-probing-10.txt> as Experimental RFC The IESG plans to make a decision in the next few weeks, and solicits final comments on this action. Please send substantive comments to the last-call@ietf.org mailing lists by 2023-08-28. Exceptionally, comments may be sent to iesg@ietf.org instead. In either case, please retain the beginning of the Subject line to allow automated sorting. Abstract This document sets out steps that DNS servers (recursive resolvers and authoritative servers) can take unilaterally (without any coordination with other peers) to defend DNS query privacy against a passive network monitor. The steps in this document can be defeated by an active attacker, but should be simpler and less risky to deploy than more powerful defenses. The goal of this document is to simplify and speed deployment of opportunistic encrypted transport in the recursive-to-authoritative hop of the DNS ecosystem. Wider easy deployment of the underlying transport on an opportunistic basis may facilitate the future specification of stronger cryptographic protections against more powerful attacks. The file can be obtained via https://datatracker.ietf.org/doc/draft-ietf-dprive-unilateral-probing/ The following IPR Declarations may be related to this I-D: https://datatracker.ietf.org/ipr/5904/