Re: [dns-privacy] ALPN protocol ID for DoT

"Martin Thomson" <mt@lowentropy.net> Fri, 13 December 2019 01:26 UTC

Return-Path: <mt@lowentropy.net>
X-Original-To: dns-privacy@ietfa.amsl.com
Delivered-To: dns-privacy@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EAE221200FB for <dns-privacy@ietfa.amsl.com>; Thu, 12 Dec 2019 17:26:03 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.701
X-Spam-Level:
X-Spam-Status: No, score=-2.701 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=lowentropy.net header.b=BWErRlPB; dkim=pass (2048-bit key) header.d=messagingengine.com header.b=htqadgdQ
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id JZOlT2Vc1gfE for <dns-privacy@ietfa.amsl.com>; Thu, 12 Dec 2019 17:26:02 -0800 (PST)
Received: from wout2-smtp.messagingengine.com (wout2-smtp.messagingengine.com [64.147.123.25]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 284C9120090 for <dns-privacy@ietf.org>; Thu, 12 Dec 2019 17:26:02 -0800 (PST)
Received: from compute1.internal (compute1.nyi.internal [10.202.2.41]) by mailout.west.internal (Postfix) with ESMTP id A8CBA7FD for <dns-privacy@ietf.org>; Thu, 12 Dec 2019 20:26:01 -0500 (EST)
Received: from imap2 ([10.202.2.52]) by compute1.internal (MEProxy); Thu, 12 Dec 2019 20:26:01 -0500
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=lowentropy.net; h=mime-version:message-id:in-reply-to:references:date:from:to :subject:content-type; s=fm1; bh=AaaCDbYIlo95THeB1IVOBHHJWbea/4r mr+PDfhTrlbU=; b=BWErRlPB7ReLp2/de1xcJSMTHjgVSPiD2anls+axRHe9uDa SW/smds6g1y96jXpWCTO9eIzZZ2Ol4ABjSxGYYJElO0iCHO5L3+sqms+lYswzXgB LZxCNvJL3mLHsfa5iWODDKh0DzFMuPw7rIhy+qWqkLJCw6GxmxvOIa2kPiMUMI3+ i43aKgiww7QOoTnTyBylb3lHFwew8jfIZC8vwwZFuGDO8gN2sUDa6xSBbGDKnN+r 9kfdFGICiAHuVwZeZQvzWaQucvZya23XO8rr0V3j6s1Xi5XOWHg1LWFhVVuxGL6R ZAJ3C+COVfS+26xcO6zNMHbt3U8NVnJdGveGt5A==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=content-type:date:from:in-reply-to :message-id:mime-version:references:subject:to:x-me-proxy :x-me-proxy:x-me-sender:x-me-sender:x-sasl-enc; s=fm1; bh=AaaCDb YIlo95THeB1IVOBHHJWbea/4rmr+PDfhTrlbU=; b=htqadgdQeOoKvXtTm80sBY 0/pHAcSy0033eocHiaYhAR+QEfs9S5ZRra26/OSFmz1AUSIBgzgengKu7eC/6eKY f54UApgRVtMVebIuRTuA0Dcg4/CktN489gb651bOGUqm3FlUbo4Bku8/xPEyF5LR /y+MGOq/MJdhHOg4pWi3v/Yxxsk0Hqr/ZVO4kN5Za+e3+FCysuf9XkQJEtcBs8N4 PNZz1U/IcKWc88ljLVTvB8qCXBQU1OFXvZs5SgmLJRHKs84/E8RNz6f5rEiUNBPY 8R7+j3H4vBuoil/bMge37B/m8oNtgBfvFKJMUL6IJYVje3jOoqDHtSUQCOipFopA ==
X-ME-Sender: <xms:qejyXUo5uLlwKAkK2JXsYXRLjjM9lJVo4tDSVr1TQsjavi45VUkI6A>
X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedufedrudelkedgfeegucetufdoteggodetrfdotf fvucfrrhhofhhilhgvmecuhfgrshhtofgrihhlpdfqfgfvpdfurfetoffkrfgpnffqhgen uceurghilhhouhhtmecufedttdenucenucfjughrpefofgggkfgjfhffhffvufgtsehttd ertderredtnecuhfhrohhmpedfofgrrhhtihhnucfvhhhomhhsohhnfdcuoehmtheslhho figvnhhtrhhophihrdhnvghtqeenucfrrghrrghmpehmrghilhhfrhhomhepmhhtsehloh ifvghnthhrohhphidrnhgvthenucevlhhushhtvghrufhiiigvpedt
X-ME-Proxy: <xmx:qejyXVKI3D25cmnrjGkg3FmMVXoAakfRWhE3ElNaza3FMop61KRJlQ> <xmx:qejyXWJUHYcCiDBEhnW8qDiFKhGbhQ0uMRvOU51IRuuVVQmNtTEEkA> <xmx:qejyXenAEcMb52f8XqJ7YyByYnewXyCST_shDmyrgodsaiYMPbCagA> <xmx:qejyXVlo0lXFpI0X67NXlDXNXCx2mn-biFK2Qb4LIxjLwe0xl-atCg>
Received: by mailuser.nyi.internal (Postfix, from userid 501) id 21718E00A2; Thu, 12 Dec 2019 20:26:01 -0500 (EST)
X-Mailer: MessagingEngine.com Webmail Interface
User-Agent: Cyrus-JMAP/3.1.7-680-g58d4e90-fmstable-20191213v1
Mime-Version: 1.0
Message-Id: <569e2a04-3de8-4415-8b8c-b935e06d2440@www.fastmail.com>
In-Reply-To: <CAP8yD=sAK+saanKriO=hr23-VB0BQYbLqrqts+9z=6tQd_d5tg@mail.gmail.com>
References: <D59215DB-15F4-40F1-9606-C8BB6829BEE6@akamai.com> <CAP8yD=sAK+saanKriO=hr23-VB0BQYbLqrqts+9z=6tQd_d5tg@mail.gmail.com>
Date: Fri, 13 Dec 2019 12:25:42 +1100
From: Martin Thomson <mt@lowentropy.net>
To: dns-privacy@ietf.org
Content-Type: text/plain
Archived-At: <https://mailarchive.ietf.org/arch/msg/dns-privacy/cosnivVPDvHORZEm9nMvdd64Kgw>
Subject: Re: [dns-privacy] ALPN protocol ID for DoT
X-BeenThere: dns-privacy@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: <dns-privacy.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dns-privacy/>
List-Post: <mailto:dns-privacy@ietf.org>
List-Help: <mailto:dns-privacy-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 13 Dec 2019 01:26:04 -0000

On Fri, Dec 13, 2019, at 12:12, Allison Mankin wrote:
> Question for the WG:
> Would we want to update RFC 7858 (or RFC 8310) to indicate the ALPN ID 
> exists? This would be for the sake of future implementors, whether they 
> want to run DoT and DoH, or want to cautiously run only DoT on 443.. 

Something like this doesn't need to update RFC 7858, any more than RFC 7301 updated RFC 2818 when it defined "http/1.1".  It can be a small, standalone document.  If there were a reason to reopen RFC 7858 (or 8310), then I would definitely roll the change in, but the fix doesn't need to be very disruptive.