[dns-privacy] I-D Action: draft-ietf-dprive-unilateral-probing-12.txt
internet-drafts@ietf.org Thu, 31 August 2023 17:21 UTC
Return-Path: <internet-drafts@ietf.org>
X-Original-To: dns-privacy@ietf.org
Delivered-To: dns-privacy@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 44305C15155E; Thu, 31 Aug 2023 10:21:02 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: internet-drafts@ietf.org
To: i-d-announce@ietf.org
Cc: dns-privacy@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 11.9.0
Auto-Submitted: auto-generated
Precedence: bulk
Reply-To: dns-privacy@ietf.org
Message-ID: <169350246226.1188.3759421801682614384@ietfa.amsl.com>
Date: Thu, 31 Aug 2023 10:21:02 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/dns-privacy/ip6ZOzFNamfXYyr0QyULwVmLqQs>
Subject: [dns-privacy] I-D Action: draft-ietf-dprive-unilateral-probing-12.txt
X-BeenThere: dns-privacy@ietf.org
X-Mailman-Version: 2.1.39
List-Id: Addition of privacy to the DNS protocol <dns-privacy.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dns-privacy/>
List-Post: <mailto:dns-privacy@ietf.org>
List-Help: <mailto:dns-privacy-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 31 Aug 2023 17:21:02 -0000
Internet-Draft draft-ietf-dprive-unilateral-probing-12.txt is now available.
It is a work item of the DNS PRIVate Exchange (DPRIVE) WG of the IETF.
Title: Unilateral Opportunistic Deployment of Encrypted Recursive-to-Authoritative DNS
Authors: Daniel Kahn Gillmor
Joey Salazar
Paul Hoffman
Name: draft-ietf-dprive-unilateral-probing-12.txt
Pages: 33
Dates: 2023-08-31
Abstract:
This document sets out steps that DNS servers (recursive resolvers
and authoritative servers) can take unilaterally (without any
coordination with other peers) to defend DNS query privacy against a
passive network monitor. The steps in this document can be defeated
by an active attacker, but should be simpler and less risky to deploy
than more powerful defenses.
The goal of this document is to simplify and speed deployment of
opportunistic encrypted transport in the recursive-to-authoritative
hop of the DNS ecosystem. Wider easy deployment of the underlying
encrypted transport on an opportunistic basis may facilitate the
future specification of stronger cryptographic protections against
more powerful attacks.
The IETF datatracker status page for this Internet-Draft is:
https://datatracker.ietf.org/doc/draft-ietf-dprive-unilateral-probing/
There is also an HTMLized version available at:
https://datatracker.ietf.org/doc/html/draft-ietf-dprive-unilateral-probing-12
A diff from the previous version is available at:
https://author-tools.ietf.org/iddiff?url2=draft-ietf-dprive-unilateral-probing-12
Internet-Drafts are also available by rsync at:
rsync.ietf.org::internet-drafts
- [dns-privacy] I-D Action: draft-ietf-dprive-unila… internet-drafts