[dns-privacy] FW: New Version Notification for draft-wing-dprive-dnsodtls-01.txt

"Tirumaleswar Reddy (tireddy)" <tireddy@cisco.com> Thu, 07 May 2015 03:15 UTC

Return-Path: <tireddy@cisco.com>
X-Original-To: dns-privacy@ietfa.amsl.com
Delivered-To: dns-privacy@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id AAC2F1A8733 for <dns-privacy@ietfa.amsl.com>; Wed, 6 May 2015 20:15:43 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -14.511
X-Spam-Level:
X-Spam-Status: No, score=-14.511 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Z65Uw5f11W-o for <dns-privacy@ietfa.amsl.com>; Wed, 6 May 2015 20:15:42 -0700 (PDT)
Received: from alln-iport-4.cisco.com (alln-iport-4.cisco.com [173.37.142.91]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 2A97B1A8701 for <dns-privacy@ietf.org>; Wed, 6 May 2015 20:15:42 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=2874; q=dns/txt; s=iport; t=1430968542; x=1432178142; h=from:to:subject:date:message-id:references:in-reply-to: content-transfer-encoding:mime-version; bh=OAeQ3FcSMmn4/NBQ1Y7Zs5GHsM8JzGva3JUaumx4HoU=; b=e/ki0IoqpL0HTIP2l85cFWMd18LR5bGAdKRV/1hm/5JsZrzOF8j4/4Ma KMTISF0Cj2j4i05EkV8Js2k7zd3L71AC1+zYTrc6j0Ms7rRJlanwQy3Ci QVjj4c89qvvH0tSOurB0LoTd8aARsRMNCR3dM7NQJGQTPh+6DijzDJtjL s=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0ArBQBH2EpV/5xdJa1cgwxUXgaDGMF5ZgmBVoYFAhyBCzgUAQEBAQEBAYEKhCABAQEEIxFDDgQCAQgRBAEBAwIGHQMCAgIwFAEGAQEFAwIEEwiIJA2xUpMtAQEBAQEBAQEBAQEBAQEBAQEBAQEBF4EhihiEOho4BoJiL4EWBYsnhwGEFIdoPYMZkT8jg3ZvAYFDgQEBAQE
X-IronPort-AV: E=Sophos;i="5.13,382,1427760000"; d="scan'208";a="147869453"
Received: from rcdn-core-5.cisco.com ([173.37.93.156]) by alln-iport-4.cisco.com with ESMTP; 07 May 2015 03:15:41 +0000
Received: from xhc-aln-x13.cisco.com (xhc-aln-x13.cisco.com [173.36.12.87]) by rcdn-core-5.cisco.com (8.14.5/8.14.5) with ESMTP id t473FfRn028474 (version=TLSv1/SSLv3 cipher=AES128-SHA bits=128 verify=FAIL) for <dns-privacy@ietf.org>; Thu, 7 May 2015 03:15:41 GMT
Received: from xmb-rcd-x10.cisco.com ([169.254.15.74]) by xhc-aln-x13.cisco.com ([173.36.12.87]) with mapi id 14.03.0195.001; Wed, 6 May 2015 22:15:41 -0500
From: "Tirumaleswar Reddy (tireddy)" <tireddy@cisco.com>
To: "dns-privacy@ietf.org" <dns-privacy@ietf.org>
Thread-Topic: New Version Notification for draft-wing-dprive-dnsodtls-01.txt
Thread-Index: AQHQiHNjBpn8iZTKYkuPSJ0QbnKWSJ1v1fmg
Date: Thu, 07 May 2015 03:15:40 +0000
Message-ID: <913383AAA69FF945B8F946018B75898A47833D31@xmb-rcd-x10.cisco.com>
References: <20150507031028.32318.82208.idtracker@ietfa.amsl.com>
In-Reply-To: <20150507031028.32318.82208.idtracker@ietfa.amsl.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.65.73.113]
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
Archived-At: <http://mailarchive.ietf.org/arch/msg/dns-privacy/kHb1VL3KidUhZPcjXe8WWcApmPg>
Subject: [dns-privacy] FW: New Version Notification for draft-wing-dprive-dnsodtls-01.txt
X-BeenThere: dns-privacy@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: <dns-privacy.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dns-privacy/>
List-Post: <mailto:dns-privacy@ietf.org>
List-Help: <mailto:dns-privacy-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 07 May 2015 03:15:43 -0000

This revision addresses comments from Simon.

-Tiru

-----Original Message-----
From: internet-drafts@ietf.org [mailto:internet-drafts@ietf.org] 
Sent: Thursday, May 07, 2015 8:40 AM
To: Prashanth Patil (praspati); Tirumaleswar Reddy (tireddy); Tirumaleswar Reddy (tireddy); Dan Wing (dwing); Dan Wing (dwing); Prashanth Patil (praspati)
Subject: New Version Notification for draft-wing-dprive-dnsodtls-01.txt


A new version of I-D, draft-wing-dprive-dnsodtls-01.txt has been successfully submitted by Tirumaleswar Reddy and posted to the IETF repository.

Name:		draft-wing-dprive-dnsodtls
Revision:	01
Title:		DNS over DTLS (DNSoD)
Document date:	2015-05-06
Group:		Individual Submission
Pages:		13
URL:            https://www.ietf.org/internet-drafts/draft-wing-dprive-dnsodtls-01.txt
Status:         https://datatracker.ietf.org/doc/draft-wing-dprive-dnsodtls/
Htmlized:       https://tools.ietf.org/html/draft-wing-dprive-dnsodtls-01
Diff:           https://www.ietf.org/rfcdiff?url2=draft-wing-dprive-dnsodtls-01

Abstract:
   DNS queries and responses are visible to network elements on the path
   between the DNS client and its server.  These queries and responses
   can contain privacy-sensitive information which is valuable to
   protect.  An active attacker can send bogus responses causing
   misdirection of the subsequent connection.

   To counter passive listening and active attacks, this document
   proposes the use of Datagram Transport Layer Security (DTLS) for DNS,
   to protect against passive listeners and certain active attacks.  As
   DNS needs to remain fast, this proposal also discusses mechanisms to
   reduce DTLS round trips and reduce DTLS handshake size.  The proposed
   mechanism runs over the default DNS port and can also run over an
   alternate port.

                                                                                  


Please note that it may take a couple of minutes from the time of submission until the htmlized version and diff are available at tools.ietf.org.

The IETF Secretariat