Re: OFFTOPIC: DNSSEC groupthink versus improving DNS

Olaf Kolkman <olaf@NLnetLabs.nl> Thu, 07 August 2008 19:07 UTC

Return-Path: <owner-namedroppers@ops.ietf.org>
X-Original-To: ietfarch-dnsext-archive@core3.amsl.com
Delivered-To: ietfarch-dnsext-archive@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 3497B3A67ED; Thu, 7 Aug 2008 12:07:05 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -100.001
X-Spam-Level:
X-Spam-Status: No, score=-100.001 tagged_above=-999 required=5 tests=[NO_RELAYS=-0.001, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id zhE3lkbwXsxg; Thu, 7 Aug 2008 12:07:04 -0700 (PDT)
Received: from psg.com (psg.com [IPv6:2001:418:1::62]) by core3.amsl.com (Postfix) with ESMTP id 576603A67EB; Thu, 7 Aug 2008 12:06:58 -0700 (PDT)
Received: from majordom by psg.com with local (Exim 4.69 (FreeBSD)) (envelope-from <owner-namedroppers@ops.ietf.org>) id 1KRAlB-0001Ih-4E for namedroppers-data@psg.com; Thu, 07 Aug 2008 19:02:53 +0000
Received: from [2001:7b8:206:1::1] (helo=open.nlnetlabs.nl) by psg.com with esmtps (TLSv1:AES256-SHA:256) (Exim 4.69 (FreeBSD)) (envelope-from <olaf@NLnetLabs.nl>) id 1KRAl7-0001I3-4J for namedroppers@ops.ietf.org; Thu, 07 Aug 2008 19:02:51 +0000
Received: from [IPv6:2001:888:1243::21b:63ff:fec4:a963] ([IPv6:2001:888:1243:0:21b:63ff:fec4:a963]) (authenticated bits=0) by open.nlnetlabs.nl (8.14.2/8.14.2) with ESMTP id m77J2gV2072200 (version=TLSv1/SSLv3 cipher=AES128-SHA bits=128 verify=NO); Thu, 7 Aug 2008 21:02:42 +0200 (CEST) (envelope-from olaf@NLnetLabs.nl)
Cc: Namedroppers <namedroppers@ops.ietf.org>
Message-Id: <F153E1C5-6E05-475A-897D-471398D161C9@NLnetLabs.nl>
From: Olaf Kolkman <olaf@NLnetLabs.nl>
To: bert hubert <bert.hubert@netherlabs.nl>
In-Reply-To: <20080807134236.GA19024@outpost.ds9a.nl>
Content-Type: multipart/signed; protocol="application/pgp-signature"; micalg="pgp-sha1"; boundary="Apple-Mail-5--689606043"
Content-Transfer-Encoding: 7bit
Mime-Version: 1.0 (Apple Message framework v926)
Subject: Re: OFFTOPIC: DNSSEC groupthink versus improving DNS
Date: Thu, 07 Aug 2008 21:02:42 +0200
References: <489AD5E3.20708@nlnetlabs.nl> <20080807134236.GA19024@outpost.ds9a.nl>
X-Pgp-Agent: GPGMail d52 (v52, Leopard)
X-Mailer: Apple Mail (2.926)
X-Greylist: Sender succeeded SMTP AUTH authentication, not delayed by milter-greylist-3.0 (open.nlnetlabs.nl [IPv6:2001:7b8:206:1::1]); Thu, 07 Aug 2008 21:02:43 +0200 (CEST)
Sender: owner-namedroppers@ops.ietf.org
Precedence: bulk
List-ID: <namedroppers.ops.ietf.org>


Bert,

Imagine a person that has spend considerable amount of time, money and  
energy in implementing DNSSEC in servers, tools and libraries; has  
'evanginered' DNSSEC for years in a consistently balanced way,  
recognizing that implementing DNSSEC is far from easy; and has  
provided multiple pieces of documentation. In other words a person who  
has put the money where the mouth is.

How would such person defend against being assessed to suffer from  
groupthink or tunnelvission?

Every word such a person would utter in defense would be to responded  
to as "That person has a vetted interest and is part of the  
groupthinking tunnelvisionaires".

These sort of remarks are not very helpful for constructive  
engineering and don't help to get the core of your message across:  
"Keep an open mind in alternative interim(?) approaches and work on  
making DNSSEC easier to operate"


--Olaf