Re: [dns-privacy] Fwd: New Version Notification for draft-huitema-quic-dnsoquic-00.txt

Mike Bishop <Michael.Bishop@microsoft.com> Tue, 11 April 2017 18:39 UTC

Return-Path: <Michael.Bishop@microsoft.com>
X-Original-To: dns-privacy@ietfa.amsl.com
Delivered-To: dns-privacy@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9774812EBFF; Tue, 11 Apr 2017 11:39:46 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.801
X-Spam-Level:
X-Spam-Status: No, score=-2.801 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, HTTPS_HTTP_MISMATCH=1.989, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-2.8, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001, T_KAM_HTML_FONT_INVALID=0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=microsoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 9CMT48ObGhKN; Tue, 11 Apr 2017 11:39:44 -0700 (PDT)
Received: from NAM01-BN3-obe.outbound.protection.outlook.com (mail-bn3nam01on0104.outbound.protection.outlook.com [104.47.33.104]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id BC62A12EC0A; Tue, 11 Apr 2017 11:39:39 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=Wp4IyPCfB3nzTk2HxI8QMxpc3/LAqybgADDs1JHDQpI=; b=QSBCphzt5Ky2rjiNj/LSdbXGywmY4RVi2NRwX3IrxKpH77Hwsq9wuzRo5tBRZdpys3zp7mgQxyWsmKA+TFmKSpeGA+cfNgrp45org4Vv6IvrQPJj7XI+lZJcLLrT8puQGmit7Z1z864M0uzKAZbtMXyWf6DPw+mdsGjvTZtaqpc=
Received: from BN6PR03MB2708.namprd03.prod.outlook.com (10.173.144.15) by BN6PR03MB2708.namprd03.prod.outlook.com (10.173.144.15) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256_P256) id 15.1.1019.17; Tue, 11 Apr 2017 18:39:36 +0000
Received: from BN6PR03MB2708.namprd03.prod.outlook.com ([10.173.144.15]) by BN6PR03MB2708.namprd03.prod.outlook.com ([10.173.144.15]) with mapi id 15.01.1019.025; Tue, 11 Apr 2017 18:39:36 +0000
From: Mike Bishop <Michael.Bishop@microsoft.com>
To: huitema <huitema@huitema.net>, "quic@ietf.org" <quic@ietf.org>, "dns-privacy@ietf.org" <dns-privacy@ietf.org>
Thread-Topic: Fwd: New Version Notification for draft-huitema-quic-dnsoquic-00.txt
Thread-Index: AQHSsh8Zi+JVfi/DOEOY9pX/8e8kBKHAfzMA
Date: Tue, 11 Apr 2017 18:39:36 +0000
Message-ID: <BN6PR03MB2708062197E49BF2F98402B487000@BN6PR03MB2708.namprd03.prod.outlook.com>
References: <0b31dc15-3e13-ac36-5c09-056ea8f1b2e8@huitema.net> <cbdb51e1-7f5a-9ddf-a30e-6ca9c2b9c67d@huitema.net>
In-Reply-To: <cbdb51e1-7f5a-9ddf-a30e-6ca9c2b9c67d@huitema.net>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: huitema.net; dkim=none (message not signed) header.d=none;huitema.net; dmarc=none action=none header.from=microsoft.com;
x-originating-ip: [2001:4898:80e8::51f]
x-microsoft-exchange-diagnostics: 1; BN6PR03MB2708; 7:AjVtyhmG4GMJpDFGRD4RDxtRiM84FDJz/2O6ScDNFWx2/fPIERrcctuJZQskjXv/xPeKGMQ6cE1Z8Jer4H7iWi67sbAxly05KZZjs4CHve4efsjOWqI4RBZtiUOJi4gDMI2gAWj/pQ+2ruvt/unDc2q1czu7VGepYSeJ3Aku40UleDIqIZHpMHemS+1aMuSV3zuo/2jg+Wyya/++5k4LTPHEQHsXs9JCIH0tfjc9pfIMirqIRS+cpkI8ZhO0Z5Znb7GxqKrpXxbOyFQu14DWMvH/8M+sPIlRearogMaTqFUMsa7f4cAbQsOa4M1tQkw1EnxxAt6U4738pJl1Ws7/Vj/Ri6ywN4PHzhoURLbsxzg=
x-ld-processed: 72f988bf-86f1-41af-91ab-2d7cd011db47,ExtAddr
x-ms-office365-filtering-correlation-id: dfda9b37-821e-4cdb-fc0f-08d4810a1b0c
x-ms-office365-filtering-ht: Tenant
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:(22001)(2017030254075)(48565401081)(201703131423075)(201703031133081)(201702281549075); SRVR:BN6PR03MB2708;
x-microsoft-antispam-prvs: <BN6PR03MB270833D41FBDE9774C9798B587000@BN6PR03MB2708.namprd03.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(158342451672863)(120809045254105)(189930954265078)(788757137089)(211936372134217)(206333022235701)(219752817060721)(21748063052155);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(61425038)(6040450)(601004)(2401047)(8121501046)(5005006)(3002001)(10201501046)(93006095)(93001095)(6055026)(61426038)(61427038)(6041248)(20161123562025)(201703131423075)(201702281528075)(201703061421075)(20161123560025)(20161123555025)(20161123564025)(6072148); SRVR:BN6PR03MB2708; BCL:0; PCL:0; RULEID:; SRVR:BN6PR03MB2708;
x-forefront-prvs: 0274272F87
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(39840400002)(39850400002)(39860400002)(39400400002)(39410400002)(39450400003)(377454003)(377424004)(6506006)(53936002)(54896002)(99286003)(606005)(9686003)(55016002)(77096006)(236005)(6436002)(6306002)(230783001)(2906002)(102836003)(790700001)(122556002)(6116002)(25786009)(76176999)(6246003)(8936002)(50986999)(5005710100001)(10290500002)(15650500001)(2950100002)(2420400007)(3280700002)(3660700001)(54356999)(10710500007)(10090500001)(86362001)(189998001)(2900100001)(33656002)(2501003)(81166006)(38730400002)(7110500001)(8676002)(229853002)(8990500004)(5660300001)(53546009)(7736002)(2201001)(7906003)(7696004)(74316002); DIR:OUT; SFP:1102; SCL:1; SRVR:BN6PR03MB2708; H:BN6PR03MB2708.namprd03.prod.outlook.com; FPR:; SPF:None; MLV:sfv; LANG:en;
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: multipart/alternative; boundary="_000_BN6PR03MB2708062197E49BF2F98402B487000BN6PR03MB2708namp_"
MIME-Version: 1.0
X-OriginatorOrg: microsoft.com
X-MS-Exchange-CrossTenant-originalarrivaltime: 11 Apr 2017 18:39:36.8333 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 72f988bf-86f1-41af-91ab-2d7cd011db47
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BN6PR03MB2708
Archived-At: <https://mailarchive.ietf.org/arch/msg/dns-privacy/ts6LyM2j2XSRzJGYDrp1bA3JtGU>
Subject: Re: [dns-privacy] Fwd: New Version Notification for draft-huitema-quic-dnsoquic-00.txt
X-BeenThere: dns-privacy@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: <dns-privacy.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dns-privacy/>
List-Post: <mailto:dns-privacy@ietf.org>
List-Help: <mailto:dns-privacy-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 11 Apr 2017 18:39:47 -0000

Looks great – I’m excited to have another concrete application profile we can look at.

As a side note, I think 4.4 mischaracterizes any recent draft of HTTP/QUIC.  An HTTP server does explicitly need to listen for client-initiated streams opening; there’s no announcement of this happening on Stream 3 as you describe.  The main effect of choosing to have no control stream is that there can be no reliable session-level application context, since data on any stream can be lost via a stream reset at the wrong time.

5.2.2 is an example of this issue – how will the SERVFAIL be reliably delivered if the stream is reset?  You probably need to either define error codes for DNS/QUIC and replace SERVFAIL with those, or reliably deliver the SERVFAIL (somehow – by never resetting streams?).

From: QUIC [mailto:quic-bounces@ietf.org] On Behalf Of Christian Huitema
Sent: Monday, April 10, 2017 10:23 AM
To: quic@ietf.org; dns-privacy@ietf.org
Subject: Fwd: Fwd: New Version Notification for draft-huitema-quic-dnsoquic-00.txt


FYI: Just published this draft describing transport of DNS over a dedicated QUIC connection.
-- Christian Huitema

-------- Forwarded Message --------
Subject:

New Version Notification for draft-huitema-quic-dnsoquic-00.txt

Date:

Mon, 10 Apr 2017 09:45:37 -0700

From:

internet-drafts@ietf.org<mailto:internet-drafts@ietf.org>

To:

Melinda Shore <mshore@fastly.com><mailto:mshore@fastly.com>, Sara Dickinson <sara@sinodun.com><mailto:sara@sinodun.com>, Christian Huitema <huitema@huitema.net><mailto:huitema@huitema.net>, Allison Mankin <amankin@salesforce.com><mailto:amankin@salesforce.com>, Janardhan Iyengar <jri@google.com><mailto:jri@google.com>, Jana Iyengar <jri@google.com><mailto:jri@google.com>



A new version of I-D, draft-huitema-quic-dnsoquic-00.txt

has been successfully submitted by Christian Huitema and posted to the

IETF repository.



Name:          draft-huitema-quic-dnsoquic

Revision:      00

Title:         Specification of DNS over QUIC

Document date: 2017-04-10

Group:         Individual Submission

Pages:         18

URL:            https://www.ietf.org/internet-drafts/draft-huitema-quic-dnsoquic-00.txt<https://na01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Finternet-drafts%2Fdraft-huitema-quic-dnsoquic-00.txt&data=02%7C01%7Cmichael.bishop%40microsoft.com%7C5df00a51bfe64b16ca4b08d480363ab3%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C636274417782332222&sdata=QxDgeYj6NMHseVKcgY%2Fv8pgLqj09avV1PnGaOJv7%2B3c%3D&reserved=0>

Status:         https://datatracker.ietf.org/doc/draft-huitema-quic-dnsoquic/<https://na01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdatatracker.ietf.org%2Fdoc%2Fdraft-huitema-quic-dnsoquic%2F&data=02%7C01%7Cmichael.bishop%40microsoft.com%7C5df00a51bfe64b16ca4b08d480363ab3%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C636274417782332222&sdata=c7MuOxq2w3L2jz3MWcwA96gCJq8l3ckGjnCF6fHJfNk%3D&reserved=0>

Htmlized:       https://tools.ietf.org/html/draft-huitema-quic-dnsoquic-00<https://na01.safelinks.protection.outlook.com/?url=https%3A%2F%2Ftools.ietf.org%2Fhtml%2Fdraft-huitema-quic-dnsoquic-00&data=02%7C01%7Cmichael.bishop%40microsoft.com%7C5df00a51bfe64b16ca4b08d480363ab3%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C636274417782332222&sdata=i4nBJms1WZwRo78vAZWFSAlfuH49H8zD2WjQIu2Gqwc%3D&reserved=0>

Htmlized:       https://datatracker.ietf.org/doc/html/draft-huitema-quic-dnsoquic-00<https://na01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdatatracker.ietf.org%2Fdoc%2Fhtml%2Fdraft-huitema-quic-dnsoquic-00&data=02%7C01%7Cmichael.bishop%40microsoft.com%7C5df00a51bfe64b16ca4b08d480363ab3%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C636274417782332222&sdata=JywZYehy3Axc7sDXskM2mGeW4kdiiPBSMZlbicD1N58%3D&reserved=0>





Abstract:

   This document describes the use of QUIC to provide transport privacy

   for DNS.  The encryption provided by QUIC has similar properties to

   that provided by TLS, while QUIC transport eliminates the head-of-

   line blocking issues inherent with TCP and provides more efficient

   error corrections than UDP.  DNS over QUIC has privacy properties

   similar to DNS over TLS specified in RFC7858, and performance similar

   to classic DNS over UDP.









Please note that it may take a couple of minutes from the time of submission

until the htmlized version and diff are available at tools.ietf.org.



The IETF Secretariat