Re: [dns-privacy] [EXTERNAL] Re: Review request: draft-btw-dprive-rfc8484-clarification

Rob Sayre <sayrer@gmail.com> Fri, 11 September 2020 05:51 UTC

Return-Path: <sayrer@gmail.com>
X-Original-To: dns-privacy@ietfa.amsl.com
Delivered-To: dns-privacy@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9C2323A146F for <dns-privacy@ietfa.amsl.com>; Thu, 10 Sep 2020 22:51:23 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.098
X-Spam-Level:
X-Spam-Status: No, score=-2.098 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id EDCcWI0AamWZ for <dns-privacy@ietfa.amsl.com>; Thu, 10 Sep 2020 22:51:22 -0700 (PDT)
Received: from mail-il1-x12a.google.com (mail-il1-x12a.google.com [IPv6:2607:f8b0:4864:20::12a]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 725413A146B for <dns-privacy@ietf.org>; Thu, 10 Sep 2020 22:51:22 -0700 (PDT)
Received: by mail-il1-x12a.google.com with SMTP id a19so3394795ilq.10 for <dns-privacy@ietf.org>; Thu, 10 Sep 2020 22:51:22 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=M73YdAz3YKG/d22Lrds7A0sBASsw1V5wzODZh4kfCmU=; b=sxNxyiwZ3Tfk2lc0Wq6OPIAKjrXfSGKGI8LbA+kzGfKhG/UZ73e3DwLDcgCBejWZIQ KDHZF85bU1ym+Y+Ormj0X7CwE+lDoIo2Q+MVPs8r4WRuDZNSX5hlrXGODcqDdhyi3Wm6 zWj4cBfYp//L7S/lzh8B+BsBMRxR5JPz2lSh+t4wQiqe35UpcmvHS+2SREnLWXU0blLE +1PZ9nXCfzWS4otAAUYznJgZSjOL9/bC6k7b95thy5AbmvzhtoUBm2Yraz4Uz3ZTQsGP gRcxtLbZLTJVCpLnoZSVjs+Z0ay8gxeeuiDS9SSgGKRcNp3jpqLJAAxjNjI2RDH9DZTv 6Suw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=M73YdAz3YKG/d22Lrds7A0sBASsw1V5wzODZh4kfCmU=; b=M8f0Cas1gsgApC/H/zsA9kU1y8hNMSjDhdjOqAmmmZ6nTaauVZgjm8tw8Odg3DIiWO FMj5TXZOagQ+cwYrtlgtc7J/H0IT9UwU29xSJUzalxxHX3Pe2AKgED3vUE7bnv210vT+ fwOfI/8Nek5pxB2aatNLTdBhZZQ2rAC28jnWpkMHZ+RZOWe3OLo2iPDci9zGQ2MHOQbO 2GQteBIpkKONTVhaQOfiauKNi+2Y3L80ByWF2BRRXYLnVK+0gAW9Y6ZPUuIMhppmDBHC qXeZiumMvX6+DWUgexGH8enQEc7f9YEMMJN7BhEN4yMsltSS3sMUw0LmLyd7F5dDsSeL Xo+g==
X-Gm-Message-State: AOAM530E7P/hXYhhyZ9crGdPLG3P0pLuEd0MYMkmuvG5t4/owxOdDhlt rFQcg7ygKTBRkuKxDePooW92fD9m9gNg1E0tN6M=
X-Google-Smtp-Source: ABdhPJyw4DPAre1XcKuNzfsVcaNsWxKBNX0HKkEj/qARioMQ6V/mpq4I/w++6lNwdqVZwa+zXXHijYp3/1TLXBPC+xI=
X-Received: by 2002:a92:3204:: with SMTP id z4mr519808ile.254.1599803481613; Thu, 10 Sep 2020 22:51:21 -0700 (PDT)
MIME-Version: 1.0
References: <6e071da2-4281-d525-03ba-4d6dfc843a76@innovationslab.net> <CAHbrMsB7T+5Y=2n4LfcXwyAZQSnK4x72R44_2mCDsLhh_zD9Vw@mail.gmail.com> <8C6ABDA8-9A0E-44BB-AE23-43F97AF29730@noware.co.uk> <CAHbrMsD2y0o+uV9eiAb32_=6ZYwAUoS_zM5+T97SxnHzxB05bQ@mail.gmail.com> <0799B139-E353-4EC7-9340-87CE00C465AA@noware.co.uk> <CAHbrMsC=kOYUL_Ei1uSnWJ3hGxu=7c10eRofXJ=w5sQzcbu6mA@mail.gmail.com> <3A9BCDDD-883D-470E-A547-79839149F8EE@sky.uk> <CAHbrMsDVZMNNhwqTUexRL3R=HoEfDTWsoXnr=bdTaWyTXV_=rw@mail.gmail.com> <C8137D01-5903-4CFA-A315-67D7012EC583@noware.co.uk> <CAHbrMsAbGci08qR+NL9Csdej_VFpfZxSdHXfwAM6azB-DryQQQ@mail.gmail.com> <MWHPR16MB153572F70A9CACA49FE01D76EA240@MWHPR16MB1535.namprd16.prod.outlook.com>
In-Reply-To: <MWHPR16MB153572F70A9CACA49FE01D76EA240@MWHPR16MB1535.namprd16.prod.outlook.com>
From: Rob Sayre <sayrer@gmail.com>
Date: Thu, 10 Sep 2020 22:51:10 -0700
Message-ID: <CAChr6SzCQNoVT6JhSdAduaBHvRLMxGB=QiYDw5368ZHd8mnOWQ@mail.gmail.com>
To: "Konda, Tirumaleswar Reddy" <TirumaleswarReddy_Konda@mcafee.com>
Cc: Ben Schwartz <bemasc=40google.com@dmarc.ietf.org>, Neil Cook <neil.cook=40noware.co.uk@dmarc.ietf.org>, "Winfield, Alister" <Alister.Winfield@sky.uk>, DNS Privacy Working Group <dns-privacy@ietf.org>
Content-Type: multipart/alternative; boundary="0000000000003b6b2a05af0346f8"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dns-privacy/z0NMo6f3GsCKAbYyfAoWda_TcDw>
Subject: Re: [dns-privacy] [EXTERNAL] Re: Review request: draft-btw-dprive-rfc8484-clarification
X-BeenThere: dns-privacy@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: <dns-privacy.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dns-privacy/>
List-Post: <mailto:dns-privacy@ietf.org>
List-Help: <mailto:dns-privacy-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 11 Sep 2020 05:51:24 -0000

On Thu, Sep 10, 2020 at 10:40 PM Konda, Tirumaleswar Reddy <
TirumaleswarReddy_Konda@mcafee.com> wrote:

>
>
> Yes lots of ISP-provided CPEs do caching. There is a draft in the ADD WG
> that describes this for at least 3 large ISPs in Europe.
>
>
>
> There are other reasons for wanting to do DoH in the CPE, such as
> performing DNS filtering on the CPE.
>
>
>
> This could equally be by client-specific logic on the central resolver, as
> demonstrated by NextDNS.
>

Well, the encryption is going to happen, and it will usually bypass the
CPE. That will upset some parties.

See you later (unsubscribing),
Rob