Re: [dnsext] Obsoleting SPF RRTYPE

Måns Nilsson <mansaxel@besserwisser.org> Thu, 25 April 2013 07:51 UTC

Return-Path: <mansaxel@besserwisser.org>
X-Original-To: dnsext@ietfa.amsl.com
Delivered-To: dnsext@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9CCCE21F8FCF; Thu, 25 Apr 2013 00:51:51 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.3
X-Spam-Level:
X-Spam-Status: No, score=-2.3 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, MIME_8BIT_HEADER=0.3, NO_RELAYS=-0.001]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id g1PvEUvUDWpz; Thu, 25 Apr 2013 00:51:51 -0700 (PDT)
Received: from jaja.besserwisser.org (primary.se [IPv6:2a01:298:4::53]) by ietfa.amsl.com (Postfix) with ESMTP id 168BF21F8E6A; Thu, 25 Apr 2013 00:51:50 -0700 (PDT)
Received: by jaja.besserwisser.org (Postfix, from userid 1004) id 60CE39EF0; Thu, 25 Apr 2013 09:51:47 +0200 (CEST)
Date: Thu, 25 Apr 2013 09:51:47 +0200
From: Måns Nilsson <mansaxel@besserwisser.org>
To: David Conrad <drc@virtualized.org>
Message-ID: <20130425075147.GN23770@besserwisser.org>
References: <6.2.5.6.2.20130423150008.0c2c0558@elandnews.com> <264F7B0D-C3FC-4C7C-A4D8-AF180DEC331F@virtualized.org>
MIME-Version: 1.0
Content-Type: multipart/signed; micalg="pgp-sha1"; protocol="application/pgp-signature"; boundary="YuJye9aIuN0w6xGV"
Content-Disposition: inline
In-Reply-To: <264F7B0D-C3FC-4C7C-A4D8-AF180DEC331F@virtualized.org>
X-URL: http://vvv.besserwisser.org
X-Purpose: More of everything NOW!
X-happyness: Life is good.
User-Agent: Mutt/1.5.20 (2009-06-14)
Cc: spfbis@ietf.org, S Moonesamy <sm+ietf@elandsys.com>, dnsext@ietf.org
Subject: Re: [dnsext] Obsoleting SPF RRTYPE
X-BeenThere: dnsext@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: DNS Extensions working group discussion list <dnsext.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsext>, <mailto:dnsext-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dnsext>
List-Post: <mailto:dnsext@ietf.org>
List-Help: <mailto:dnsext-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsext>, <mailto:dnsext-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 25 Apr 2013 07:51:51 -0000

Subject: Re: [dnsext] Obsoleting SPF RRTYPE Date: Wed, Apr 24, 2013 at 05:12:07PM -0700 Quoting David Conrad (drc@virtualized.org):
 
> I personally believe deprecating the SPF RR is the wrong way to go, but I'm guessing that discussion has already been had.

Overloading the TXT record has always been a Really Bad Idea. I'm with
drc here. While the draft probably is formally proper, it advocates the
worng decision and I cannot support it.

OTOH, mixing up routing layer with application layer and gilding some
IP addresses in favour of others is another Really Bad Idea; I'd rather
throw the entire business of supposedly Good and Bad addresses out the
window and start looking at the in-band data instead; ie. DKIM or similar.

While removing SPF can be seen as in support of above, I'm pretty certain
that it in practice just will continue as usual, in TXT records. Better 
then that we get to keep TXT records for free-form data. 

Regards, 
-- 
Måns Nilsson     primary/secondary/besserwisser/machina
MN-1334-RIPE                             +46 705 989668
I want you to organize my PASTRY trays ... my TEA-TINS are gleaming in
formation like a ROW of DRUM MAJORETTES -- please don't be FURIOUS with me --