RE: [dhcwg] Open issues in DHCP FQDN, DHCID and DDNS-DHCP Related RFCs

Ólafur Guðmundsson /DNSEXT co-chair <ogud@ogud.com> Thu, 09 March 2006 20:03 UTC

Received: from [10.91.34.44] (helo=ietf-mx.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1FHRLy-0000Uo-Th for dnsext-archive@lists.ietf.org; Thu, 09 Mar 2006 15:03:18 -0500
Received: from psg.com ([147.28.0.62]) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1FHRLy-0005pO-GN for dnsext-archive@lists.ietf.org; Thu, 09 Mar 2006 15:03:18 -0500
Received: from majordom by psg.com with local (Exim 4.60 (FreeBSD)) (envelope-from <owner-namedroppers@ops.ietf.org>) id 1FHRJy-000FFq-LF for namedroppers-data@psg.com; Thu, 09 Mar 2006 20:01:14 +0000
X-Spam-Checker-Version: SpamAssassin 3.1.0 (2005-09-13) on psg.com
X-Spam-Level:
X-Spam-Status: No, score=-2.6 required=5.0 tests=AWL,BAYES_00 autolearn=ham version=3.1.0
Received: from [66.92.146.160] (helo=ogud.com) by psg.com with esmtps (TLSv1:AES256-SHA:256) (Exim 4.60 (FreeBSD)) (envelope-from <ogud@ogud.com>) id 1FHRJx-000FFJ-D7 for namedroppers@ops.ietf.org; Thu, 09 Mar 2006 20:01:13 +0000
Received: from Puki.ogud.com (ns.ogud.com [66.92.146.160]) by ogud.com (8.13.1/8.13.1) with ESMTP id k29K0sMD076283; Thu, 9 Mar 2006 15:00:54 -0500 (EST) (envelope-from ogud@ogud.com)
Message-Id: <6.2.5.6.2.20060309145343.03d80320@ogud.com>
X-Mailer: QUALCOMM Windows Eudora Version 6.2.5.6
Date: Thu, 09 Mar 2006 15:00:48 -0500
To: margaret@thingmagic.com, Sam Hartman <hartmans-ietf@mit.edu>, Ralph Droms <rdroms@cisco.com>, Stig Venaas <Stig.Venaas@uninett.no>
From: Ólafur Guðmundsson /DNSEXT co-chair <ogud@ogud.com>
Subject: RE: [dhcwg] Open issues in DHCP FQDN, DHCID and DDNS-DHCP Related RFCs
Cc: namedroppers@ops.ietf.org, dhcwg@ietf.org, "Bernie Volz (volz)" <volz@cisco.com>
In-Reply-To: <6.2.5.6.2.20060224210949.03b72d20@ogud.com>
References: <8E296595B6471A4689555D5D725EBB210147208B@xmb-rtp-20a.amer.cisco.com> <6.2.5.6.2.20060224210949.03b72d20@ogud.com>
Mime-Version: 1.0
Content-Type: text/plain; charset="iso-8859-1"; format="flowed"
Content-Transfer-Encoding: quoted-printable
X-Scanned-By: MIMEDefang 2.56 on 66.92.146.160
Sender: owner-namedroppers@ops.ietf.org
Precedence: bulk
X-Spam-Score: 0.0 (/)
X-Scan-Signature: 36c793b20164cfe75332aa66ddb21196

Margaret,

The publication of dhcid-12 resolves all DNSEXT issues with this document
set, raised in the IETF last call and IESG discussion on the documents.
DNSEXT consider these documents complete and requests they be forwarded to
the RFC editor ASAP. Links to the new documents at the bottom of this message.


Sam Hartman,
Does the new document set address all the issues you voiced in your
discuss messages ?

Ralph, Stig,
Does this document set close all DHC issues ?

         Olafur (who wants this finished before Dallas IETF meeting)


At 13:20 25/02/2006, Ólafur Guðmundsson /DNSEXT wrote:
>At 22:57 22/02/2006, Bernie Volz \(volz\) wrote:
>
>>Hi:
>>
>>I have just submitted revised versions of the 
>>drafts. Copies of what I submitted are available at:
>>
>>Ralph had sent a list of 11 issues to the 
>>mailing list. And, then followed up with 19 
>>more raised by Pekka Savola but that list of 
>>issues did not go to the DHC WG. Both emails 
>>are below so you can see the full list of 30 issues.
>>
>>I believe I have addressed all of them.
>
><DNSEXT chair-hat=on>
>Bernie,  thank you for your diligent work on getting the document
>set updated.
>
>
>>Some key changes are that the DHCID RR now has 
>>an additional field to specify the digest type 
>>and we've switched to using SHA-256 instead of MD5.
>
><DNSEXT chair-hat=off>
>To give a little background on this change.
>During the document revision there was a off-list discussion that involved
>Ralph Droms, Olafur Gudmundsson, David Harkins, Sam Hartman, Ted Lemon
>and Bernie Volz. This recollection is mine apologies to anyone that I
>misrepresent/misunderstood/omitted.
>
>This results of discussion need to be documented, and I'm doing that here.
>   1. Without obfuscation of the client ID, it is trivial to track clients
>         as the move around.
>   1.5 No protocol change can protect a client that exposes its Client ID
>       over a public network, such as the IETF wireless net. But obfuscation
>       still provides large number of clients with increased privacy.
>
>   2. In the overall schema of things he cost difference between using MD5,
>      SHA1 and SHA256 is not that great, thus 
> the strongest one should be used.
>
>   3. Changing obfuscation functions over time can either
>      be accomplished by using a new field in DHCID or new RR type.
>      It is better not having to do a type code rollover. The rollover
>      to a new digest function MUST be defined by the NEW definition,
>      by this document. The reason for this is we are not sure if there
>      is ever a need so spending time on that right now is not productive,
>      and by selecting the one of the strongest functions available
>      right now we hope to push this far into the future, i.e. after
>      Ted, Ralph and I retire from the ietf :-).
>
>
>>We need to figure out what the next step is -- 
>>do we need another DHC / DNSEXT WG last-call or 
>>do we send these to the IESG directly?
>
>
>
><DNSEXT chair-hat=on>
>Most of the changes are "minor" and I do not see need for a last call,
>either at the WG level or IETF.
>Scanning the documents I'm concerned that the examples are TBD, thus
>I request that at least 3 parties calculate the new digests and post
>their results. After which the DHCID document is needs to be updated.
>
>>If there is strong demand, I can develop diff 
>>files but as there were a lot of minor edits 
>>and changes to references, it likely will be rather large set of differences.
>
>Diffs and (partial history are available at
>http://tools.ietf.org/wg/dnsext/draft-ietf-dnsext-dhcid-rr/
>
>http://tools.ietf.org/wg/dhc/draft-ietf-dhc-ddns-resolution/
>
>http://tools.ietf.org/wg/dhc/draft-ietf-dhc-fqdn-option/
>
>http://tools.ietf.org/wg/dhc/draft-ietf-dhc-dhcpv6-fqdn/
>
>         Ólafur
>
>
>_______________________________________________
>dhcwg mailing list
>dhcwg@ietf.org
>https://www1.ietf.org/mailman/listinfo/dhcwg
>


--
to unsubscribe send a message to namedroppers-request@ops.ietf.org with
the word 'unsubscribe' in a single line as the message text body.
archive: <http://ops.ietf.org/lists/namedroppers/>