Re: [dnsext] WGLC ENDS0-bis

Ray Bellis <Ray.Bellis@nominet.org.uk> Thu, 12 May 2011 15:19 UTC

Return-Path: <Ray.Bellis@nominet.org.uk>
X-Original-To: dnsext@ietfa.amsl.com
Delivered-To: dnsext@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D109CE0671 for <dnsext@ietfa.amsl.com>; Thu, 12 May 2011 08:19:19 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.599
X-Spam-Level:
X-Spam-Status: No, score=-6.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 1+8poDNuOEzD for <dnsext@ietfa.amsl.com>; Thu, 12 May 2011 08:19:15 -0700 (PDT)
Received: from mx1.knowthenet.org.uk (mx1.knowthenet.org.uk [213.248.199.2]) by ietfa.amsl.com (Postfix) with ESMTP id 73B9613000A for <dnsext@ietf.org>; Thu, 12 May 2011 08:19:13 -0700 (PDT)
DomainKey-Signature: s=main.dk.nominet.selector; d=nominet.org.uk; c=nofws; q=dns; h=X-IronPort-AV:Received:Received:From:To:CC:Subject: Thread-Topic:Thread-Index:Date:Message-ID:References: In-Reply-To:Accept-Language:Content-Language: X-MS-Has-Attach:X-MS-TNEF-Correlator:Content-Type: Content-ID:Content-Transfer-Encoding:MIME-Version; b=K2zlCS/yYUgDvH86uXN8RDzU5ltaBjD5eQcp0CTH851869VfqwtsaqqO SnCZE4yNlhUgqICsuiSMSvJ6BiuOSrUACnaplVwvL/GoQJAjvIe1wVS1b mJGwsZZTfxuYKxK;
DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=nominet.org.uk; i=Ray.Bellis@nominet.org.uk; q=dns/txt; s=main.dkim.nominet.selector; t=1305213555; x=1336749555; h=from:sender:reply-to:subject:date:message-id:to:cc: mime-version:content-transfer-encoding:content-id: content-description:resent-date:resent-from:resent-sender: resent-to:resent-cc:resent-message-id:in-reply-to: references:list-id:list-help:list-unsubscribe: list-subscribe:list-post:list-owner:list-archive; z=From:=20Ray=20Bellis=20<Ray.Bellis@nominet.org.uk> |Subject:=20Re:=20[dnsext]=20WGLC=20ENDS0-bis|Date:=20Thu ,=2012=20May=202011=2015:19:10=20+0000|Message-ID:=20<586 209E0-AAB6-4FBC-BEC4-311BF0E49E6C@nominet.org.uk>|To:=20E dward=20Lewis=20<Ed.Lewis@neustar.biz>|CC:=20"<dnsext@iet f.org>"=20<dnsext@ietf.org>|MIME-Version:=201.0 |Content-Transfer-Encoding:=20quoted-printable |Content-ID:=20<3722738d-0ff2-4376-ab1b-c9ba40cf7401> |In-Reply-To:=20<a06240800c9ef2d544226@[10.31.203.215]> |References:=20<4DC94AE6.5000903@ogud.com>=0D=0A=20<a0624 0800c9ef2d544226@[10.31.203.215]>; bh=3mgb3szL+QhmAhtSwwWSHaktS0xxZqpoyP1KjGSWbJE=; b=QlvEnJ0LxpdvE4sP53mDu0r/zPn0nrMCApFAuSFcS8kgGQXzo1vBLGc7 zCetUYjcTVjhkAfNlDc12uYUrcQ3+/WljpwVCPAj4lPLSuhqiGMYy5NYq AcjG1GFPcamFY+a;
X-IronPort-AV: E=Sophos;i="4.64,358,1301871600"; d="scan'208";a="32844370"
Received: from wds-exc2.okna.nominet.org.uk ([213.248.197.145]) by mx3.nominet.org.uk with ESMTP; 12 May 2011 16:19:11 +0100
Received: from WDS-EXC1.okna.nominet.org.uk ([fe80::1593:1394:a91f:8f5f]) by wds-exc2.okna.nominet.org.uk ([fe80::7577:eaca:5241:25d4%19]) with mapi; Thu, 12 May 2011 16:19:11 +0100
From: Ray Bellis <Ray.Bellis@nominet.org.uk>
To: Edward Lewis <Ed.Lewis@neustar.biz>
Thread-Topic: [dnsext] WGLC ENDS0-bis
Thread-Index: AQHMDyb+Gzq+bz2At0ay29t0H2UOiJSGXeaAgALi6wA=
Date: Thu, 12 May 2011 15:19:10 +0000
Message-ID: <586209E0-AAB6-4FBC-BEC4-311BF0E49E6C@nominet.org.uk>
References: <4DC94AE6.5000903@ogud.com> <a06240800c9ef2d544226@[10.31.203.215]>
In-Reply-To: <a06240800c9ef2d544226@[10.31.203.215]>
Accept-Language: en-GB, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
Content-Type: text/plain; charset="us-ascii"
Content-ID: <3722738d-0ff2-4376-ab1b-c9ba40cf7401>
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
Cc: "<dnsext@ietf.org>" <dnsext@ietf.org>
Subject: Re: [dnsext] WGLC ENDS0-bis
X-BeenThere: dnsext@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: DNS Extensions working group discussion list <dnsext.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsext>, <mailto:dnsext-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dnsext>
List-Post: <mailto:dnsext@ietf.org>
List-Help: <mailto:dnsext-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsext>, <mailto:dnsext-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 12 May 2011 15:19:19 -0000

Ed,

Taking two of your paragraphs that I believe are related:

> 
> # 6.8.  Middleware Boxes
> 
> This section is a problem.  Middleware boxes aren't well defined (yes, there is the parenthetical list of examples), lacking references to documents that provide definitions here.  Going beyond that I don't know what this document is trying to impart.  Are these requirements on non-DNS processes that are acting as stateful proxies for DNS messages in dealing with EDNS0 records?

I believe the intent of 6.8 is to reflect 5625, where I put in text along the lines of "if you're trying to be transparent, make sure you don't strip the EDNS0 options".

Hence it's a "get out" for the generally accepted principle that EDNS0 is "hop by hop", for those cases where the middlebox is intended to be an "invisible" hop.


> Missing material
> 
> Item 8
> 
> I think the point that EDNS0 is a hop-by-hop marshaller of parameters, and not an end-to-end signalling mechanism is not clear enough.  I don't think the architectural placement of EDNS0 is clear described.  This should be in the introductory material.

However as you say I think the hop-by-hop principle does need more text - in fact I couldn't find any text in either this document or its predecessor that was explicit about this, despite it being well understood amongst DNS protocol geeks.

This came up when I was reviewing draft-kaplan-dnsext-enum-sip-source-ref-opt-code for the Independent Submissions Editor, and it's relevant to draft-crocker-dnssec-algo-signal too.

In both cases I wanted to cite the hop-by-hop principle but couldn't find relevant chapter and verse to back it up.

kind regards,

Ray