Re: [DNSOP] Genart last call review of draft-ietf-dnsop-kskroll-sentinel-15

Jari Arkko <jari.arkko@piuha.net> Fri, 31 August 2018 05:10 UTC

Return-Path: <jari.arkko@piuha.net>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 07F73130DE2; Thu, 30 Aug 2018 22:10:48 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.899
X-Spam-Level:
X-Spam-Status: No, score=-1.899 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id xq9xjrjTaGGB; Thu, 30 Aug 2018 22:10:45 -0700 (PDT)
Received: from p130.piuha.net (p130.piuha.net [IPv6:2001:14b8:1829::130]) by ietfa.amsl.com (Postfix) with ESMTP id 6990312872C; Thu, 30 Aug 2018 22:10:45 -0700 (PDT)
Received: from localhost (localhost [127.0.0.1]) by p130.piuha.net (Postfix) with ESMTP id 7F31366021C; Fri, 31 Aug 2018 08:10:44 +0300 (EEST)
Received: from p130.piuha.net ([127.0.0.1]) by localhost (p130.piuha.net [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id dBUIAhX9rmAu; Fri, 31 Aug 2018 08:10:43 +0300 (EEST)
Received: from [127.0.0.1] (p130.piuha.net [IPv6:2001:14b8:1829::130]) by p130.piuha.net (Postfix) with ESMTPS id 781766601AB; Fri, 31 Aug 2018 08:10:43 +0300 (EEST)
From: Jari Arkko <jari.arkko@piuha.net>
Message-Id: <4C91474E-2A5E-4FC3-AB88-AD6AA25E964A@piuha.net>
Content-Type: multipart/alternative; boundary="Apple-Mail=_78F00EE9-CBBC-4A4C-BBAF-488AA68731AC"
Mime-Version: 1.0 (Mac OS X Mail 10.3 \(3273\))
Date: Fri, 31 Aug 2018 08:10:42 +0300
In-Reply-To: <80C56551-17CF-48A2-8A3F-830D089FA958@apnic.net>
Cc: draft-ietf-dnsop-kskroll-sentinel.all@ietf.org, gen-art@ietf.org, dnsop@ietf.org, ietf@ietf.org
To: Geoff Huston <gih@apnic.net>
References: <153560799626.14640.11971224364548163931@ietfa.amsl.com> <80C56551-17CF-48A2-8A3F-830D089FA958@apnic.net>
X-Mailer: Apple Mail (2.3273)
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/17Cgka15Lm_svu6UNlipMxpC5Qs>
Subject: Re: [DNSOP] Genart last call review of draft-ietf-dnsop-kskroll-sentinel-15
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.27
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 31 Aug 2018 05:10:48 -0000

Thanks for the responses, Geoff. 

One minor follow-up:

> The final point I am not so convinced about. The reason is scope of the document. This document is an instruction to folk who write DNS recursive resolvers. It is not an instruction to folk who want to set up zones that could be used to test KSK trust status. I would rather avoid adding text about the latter topic in this document, as I strongly prefer to leave it to others who may be sufficiently motivated to write a document about how to set up a measurement zone.

Oh, I do agree with this. However, as a reader I wasn’t sure if the document expects that there be an existing name (with the special labels) or none is needed. Does all this work fine, even if I don’t add anything to the sites being used in the test? That might be worth clarifying, if it isn’t somewhere already.

Jari