Re: [dnsext] [dane] Aiming towards some specific wording

Edward Lewis <Ed.Lewis@neustar.biz> Tue, 22 November 2011 13:55 UTC

Return-Path: <Ed.Lewis@neustar.biz>
X-Original-To: dnsext@ietfa.amsl.com
Delivered-To: dnsext@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 33CB621F8D9D for <dnsext@ietfa.amsl.com>; Tue, 22 Nov 2011 05:55:55 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -106.49
X-Spam-Level:
X-Spam-Status: No, score=-106.49 tagged_above=-999 required=5 tests=[AWL=0.108, BAYES_00=-2.599, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-4, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id csIAacS-V-ci for <dnsext@ietfa.amsl.com>; Tue, 22 Nov 2011 05:55:54 -0800 (PST)
Received: from stora.ogud.com (stora.ogud.com [66.92.146.20]) by ietfa.amsl.com (Postfix) with ESMTP id 26E3521F8D80 for <dnsext@ietf.org>; Tue, 22 Nov 2011 05:55:54 -0800 (PST)
Received: from work-laptop-2 (nyttbox.md.ogud.com [10.20.30.4]) by stora.ogud.com (8.14.4/8.14.4) with ESMTP id pAMDtijs008814; Tue, 22 Nov 2011 08:55:52 -0500 (EST) (envelope-from Ed.Lewis@neustar.biz)
Received: from [10.31.200.137] by work-laptop-2 (PGP Universal service); Tue, 22 Nov 2011 08:55:53 -0500
X-PGP-Universal: processed; by work-laptop-2 on Tue, 22 Nov 2011 08:55:53 -0500
Mime-Version: 1.0
Message-Id: <a06240801caf158f7c28f@[10.31.200.137]>
In-Reply-To: <1321935016.1657.19.camel@mattlaptop2.local>
References: <45EA694E-096C-41A1-B60E-BF7B3832FE2A@vpnc.org> <4EC70173.9090106@sv.cmu.edu> <247CAE36-68FB-4048-B07C-9B4C0903434D@vpnc.org> <92AA2445-000C-44CF-8CA5-9796528EA946@checkpoint.com> <0536F82C-346C-4ABE-81E6-3B008219DBD9@kirei.se> <773BAA00-22B9-43A6-BB36-8E3CB6166E38@nic.cz> <4B541E04-4A37-4402-AD01-EA95F69C8FB1@vpnc.org> <6CA2C172-4BE7-479C-B305-E454B15EA9FA@nic.cz> <20111121211312.6692917DB0E8@drugs.dv.isc.org> <a06240803caf071b97c5c@[10.31.200.137]> <1321935016.1657.19.camel@mattlaptop2.local>
Date: Tue, 22 Nov 2011 08:55:36 -0500
To: Matt McCutchen <matt@mattmccutchen.net>
From: Edward Lewis <Ed.Lewis@neustar.biz>
Content-Type: multipart/alternative; boundary="============_-890152344==_ma============"
X-Scanned-By: MIMEDefang 2.72 on 10.20.30.4
Cc: Edward Lewis <Ed.Lewis@neustar.biz>, dnsext@ietf.org, Paul Hoffman <paul.hoffman@vpnc.org>
Subject: Re: [dnsext] [dane] Aiming towards some specific wording
X-BeenThere: dnsext@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: DNS Extensions working group discussion list <dnsext.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsext>, <mailto:dnsext-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dnsext>
List-Post: <mailto:dnsext@ietf.org>
List-Help: <mailto:dnsext-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsext>, <mailto:dnsext-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 22 Nov 2011 13:55:55 -0000

(Took DANE off because I'm not on the list.)

At 20:10 -0800 11/21/11, Matt McCutchen wrote:

>That's great, RFC 4035 has a totally different definition of
>"indeterminate" than RFC 4033.

You're right.  When I answered I went to 4035 because it is the 
"protocol mod" and not 4034 because it was "records".  I usually 
ignore 4033 because it's "intro" and has no requirements language in 
it.  That's just to explain why I quoted 4035 (because these kind of 
terminology things run rampant in RFCs) and why I didn't quote 4033.

Not that 4033 is any less wrong than 4035.  I just ordinarily look at 
4034/4035 more.

Here's what '33 says:

#   Indeterminate: There is no trust anchor that would indicate that a
#   specific portion of the tree is secure.  This is the default
#   operation mode.

Certainly different from 4035 and what I would assume was the right 
way to define indeterminate.
-- 
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
Edward Lewis             
NeuStar                    You can leave a voice message at +1-571-434-5468

Vote for the word of the day:
"Papa"razzi - father that constantly takes photos of the baby
Corpureaucracy - The institution of corporate "red tape"