[dnsext] Re: [Editorial Errata Reported] RFC4035 (7972)
Rob Austein <sra@hactrn.net> Thu, 06 June 2024 03:02 UTC
Return-Path: <sra@hactrn.net>
X-Original-To: dnsext@ietfa.amsl.com
Delivered-To: dnsext@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7369BC180B75 for <dnsext@ietfa.amsl.com>; Wed, 5 Jun 2024 20:02:10 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.096
X-Spam-Level:
X-Spam-Status: No, score=-2.096 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=hactrn.net
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id CMyJR-F-SKei for <dnsext@ietfa.amsl.com>; Wed, 5 Jun 2024 20:02:06 -0700 (PDT)
Received: from adrilankha.hactrn.net (adrilankha.hactrn.net [147.28.0.19]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 70F06C1CAF2C for <dnsext@ietf.org>; Wed, 5 Jun 2024 20:02:06 -0700 (PDT)
Received: from orthanc.hactrn.net (unknown [IPv6:2601:40:c500:8311:dd83:5b18:bdfd:1379]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits)) (Client did not present a certificate) (Authenticated sender: minas-ithil.hactrn.net@hactrn.net) by adrilankha.hactrn.net (Postfix) with ESMTPSA id EEFED39944; Thu, 06 Jun 2024 03:02:01 +0000 (UTC)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=hactrn.net; s=adrilankha; t=1717642924; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:cc:mime-version:mime-version:content-type:content-type: in-reply-to:in-reply-to:references:references; bh=G+on9UCXV6M6trO2nfvbvKUTSjdVY4jI2jYWTREYE0g=; b=Cu5S75JDdvFvhYS+qd8HF/ipoNwYWgvc7UdZ6eAR8Q5NCaKtzhsim+Vjo7wJOTGxnL9vVe lksYfNFBpsAhTu7GicCJUtLGlPA5Ll5q+lieT9gRfSNzT+XQpCVB13jMF7rXmnAsz1HdGZ 74LpTfZfDNyilrWGX3lLsH/uhdk8OsZl+60xJpMnjUPPwZJqedh0TV/gyNS+EKq36xRFen +n77hJ518fQMp93rVK7N2fxKkCEinPgzOB5rTHLa3q3QV41/Gqz9loNNCAKM3h+fxA/m1L paiYzf5ku8dpWKjwxTrMqH98AJyzqCC7HrjQImMHQ4qV01yyYs6hLXaTu5PUzw==
ARC-Seal: i=1; s=adrilankha; d=hactrn.net; t=1717642924; a=rsa-sha256; cv=none; b=OMNR6mMSk7dJ0EHynkoktFshvzFdZdOHObeZjLXNJCmcH5HtKSR/LJ8uFJT4r3rs9/MS9M uD/q//vVwRFfRv93qg2wcU+neeGgX3eNFm/kiI5W1PY7CnKbkFBkKnajFND4eEr64vWDR0 jbepKA5bLH9Btkb5mqcVydaREXdg2zqForNODrug3k4dxp6mjxYmdRlpsTAgw4dJ++ree6 jEKHf3BHgYhR0qAF/qKkbYyp7vANTFWBBgLkOhF3n/jiL8sz2XxDBudeNHbIgYEF07Ebtz IxjXiA5IfOiolNca60kQUELlSCpVcmTn41+TZdXaLBJK+OTYqSFVwjgzOHQmgw==
ARC-Authentication-Results: i=1; adrilankha.hactrn.net; auth=pass smtp.auth=minas-ithil.hactrn.net@hactrn.net smtp.mailfrom=sra@hactrn.net
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=hactrn.net; s=adrilankha; t=1717642924; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:cc:mime-version:mime-version:content-type:content-type: in-reply-to:in-reply-to:references:references; bh=G+on9UCXV6M6trO2nfvbvKUTSjdVY4jI2jYWTREYE0g=; b=PSWlCODh643SlbWNbaLDLfsqFpmQDVXcjXZtbSFBOsWLOvIjgyF6GB0gwjFof5XFX1CmxT oh19phrIJGe+zBTm3xPCa8XzFo7yTlBx93Ow1WmaLi3ieIc/kBTmNQSCTdi4S3tgi6GtXe YPwKzhbIWV3BpeXTZexCz48O5Th/uvxsiOJTGsW7GpaFTfErLLHgV1i5zoVBCFi3bbRMyR 8icH3QKFuecTNg7kHp+krV9Wd26dzpTarEJVXuA9DONqF6zEkmdu05pPeZ0eZyhy5PLiF3 j9/Gd6kR1X91tMr5hjGHpoCMtRdRjU9Q9DteM1/PZXpmrK2gA/IkpZ27ZxEPYw==
Received: from orthanc.hactrn.net (localhost [IPv6:::1]) by orthanc.hactrn.net (Postfix) with ESMTP id 293F557A1964; Wed, 5 Jun 2024 23:02:00 -0400 (EDT)
Date: Wed, 05 Jun 2024 23:02:00 -0400
From: Rob Austein <sra@hactrn.net>
To: RFC Errata System <rfc-editor@rfc-editor.org>
In-Reply-To: <20240606023706.9A985C000063@rfcpa.rfc-editor.org>
References: <20240606023706.9A985C000063@rfcpa.rfc-editor.org>
User-Agent: Wanderlust/2.15.9 (Almost Unreal) Emacs/28.2 Mule/6.0
MIME-Version: 1.0 (generated by SEMI-EPG 1.14.7 - "Harue")
Content-Type: text/plain; charset="US-ASCII"
Message-Id: <20240606030200.293F557A1964@orthanc.hactrn.net>
Message-ID-Hash: OGVEM2VCEYSCPCAPWFHUDSKH6MUCE3JJ
X-Message-ID-Hash: OGVEM2VCEYSCPCAPWFHUDSKH6MUCE3JJ
X-MailFrom: sra@hactrn.net
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-dnsext.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: nate@natechoe.dev, roy.arends@telin.nl, sra@isc.org, mlarson@verisign.com, massey@cs.colostate.edu, scott.rose@nist.gov, dnsext@ietf.org
X-Mailman-Version: 3.3.9rc4
Precedence: list
Subject: [dnsext] Re: [Editorial Errata Reported] RFC4035 (7972)
List-Id: DNS Extensions working group discussion list <dnsext.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsext/aGYXqfRGFGHImI-kQs4YOooabOQ>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsext>
List-Help: <mailto:dnsext-request@ietf.org?subject=help>
List-Owner: <mailto:dnsext-owner@ietf.org>
List-Post: <mailto:dnsext@ietf.org>
List-Subscribe: <mailto:dnsext-join@ietf.org>
List-Unsubscribe: <mailto:dnsext-leave@ietf.org>
> Type: Editorial > Reported by: Nate Choe <nate@natechoe.dev> > > Section: 4.2 > > Original Text > ------------- > Security-aware resolvers MAY query for missing security RRs in an > attempt to perform validation; implementations that choose to do so > must be aware that the answers received may not be sufficient to > validate the original response. For example, a zone update may have > changed (or deleted) the desired information between the original and > follow-up queries. > > Corrected Text > -------------- > Security-aware resolvers MAY query for missing security RRs in an > attempt to perform validation; implementations that choose to do so > MUST be aware that the answers received may not be sufficient to > validate the original response. For example, a zone update may have > changed (or deleted) the desired information between the original and > follow-up queries. > > Notes > ----- > "MUST" is a key word according to RFC 2119/BCP 14 and should be capitalized. Well, it's been nearly twenty years, and I don't feel terribly strongly about this, but since Nate raised the point: I think I disagree. "MUST" is keyword, "must" is not. It probably would have been advisable to avoid the non-keyword "must" due to the risk of this confusion, but "MUST be aware" does not seem actionable to me, nor does it seem likely to be what the author of the original text (who may or may not have been me) intended. So I would reject this erratum, but as noted above, I don't feel strongly about this, and will not stand in the way if the (long disbanded) WG or my co-editors (most of whose contact information has probably changed by now) agree with Nate.
- [dnsext] [Editorial Errata Reported] RFC4035 (797… RFC Errata System
- [dnsext] Re: [Editorial Errata Reported] RFC4035 … Rob Austein
- [dnsext] Re: [Editorial Errata Reported] RFC4035 … Ted Hardie
- [dnsext] Re: [Editorial Errata Reported] RFC4035 … S Moonesamy
- [dnsext] Re: dnsext[Editorial Errata Reported] RF… Wes Hardaker
- [dnsext] Re: [Editorial Errata Reported] RFC4035 … Olafur Gudmundsson
- [dnsext] Re: [Editorial Errata Reported] RFC4035 … Rose, Scott W. (Fed)
- [dnsext] Re: [Editorial Errata Reported] RFC4035 … Rebecca VanRheenen
- [dnsext] Re: [Editorial Errata Reported] RFC4035 … Eric Vyncke (evyncke)
- [dnsext] Re: [Editorial Errata Reported] RFC4035 … Eric Vyncke (evyncke)
- [dnsext] Re: [Editorial Errata Reported] RFC4035 … Rob Austein
- [dnsext] Re: [Editorial Errata Reported] RFC4035 … Eric Vyncke (evyncke)