Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tld-00.txt> (The .onion Special-Use Domain Name) to Proposed Standard
Ted Hardie <ted.ietf@gmail.com> Tue, 14 July 2015 20:16 UTC
Return-Path: <ted.ietf@gmail.com>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 12B601B2C1E; Tue, 14 Jul 2015 13:16:46 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level:
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 27jABtaK1rOB; Tue, 14 Jul 2015 13:16:43 -0700 (PDT)
Received: from mail-wi0-x22c.google.com (mail-wi0-x22c.google.com [IPv6:2a00:1450:400c:c05::22c]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 26F541B2AD7; Tue, 14 Jul 2015 13:16:43 -0700 (PDT)
Received: by wibud3 with SMTP id ud3so23604433wib.0; Tue, 14 Jul 2015 13:16:42 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type; bh=bFOnX+H5+97Q3REMv4o4sbJYOsXVDh98aMmUC10jcoM=; b=Hn4fYDO1XzuMjoYThygTxGChl8P08lGuEuhz3mz61YQGhTcH5o9qI06QfOetc5puDX R7vQpurwO5KhWplM280mtZ8MEQ07gDGVxbkAo6zA+fhHDK+DVdcDzYxIxQlojKw3E9wd zQNzswUdlJQSLEYUehWbJFKQatPgLl1drort5f+qSEU/aaX/YNy8vg4xra4G0saTwPcT U15QvWJ+XHtsnB/oeUxDY2s9XEpzpwAhCnaZZR3oGM3cZZHMAEfrY7nnXaXBTRHNFm+O +kbvkNjpyOhwX8fDOYz1SB+4SBKFXIjSsl2qf2IWndt4Ac+Wj5YRvlQqthtYGnLxHXX3 2WlA==
MIME-Version: 1.0
X-Received: by 10.180.36.129 with SMTP id q1mr9112957wij.10.1436905001914; Tue, 14 Jul 2015 13:16:41 -0700 (PDT)
Received: by 10.194.17.68 with HTTP; Tue, 14 Jul 2015 13:16:41 -0700 (PDT)
In-Reply-To: <20150714192438.1138.96059.idtracker@ietfa.amsl.com>
References: <20150714192438.1138.96059.idtracker@ietfa.amsl.com>
Date: Tue, 14 Jul 2015 13:16:41 -0700
Message-ID: <CA+9kkMAz1ogcpWAdKaKTRm9f8sV4RO+TKu6aYB717D7+eM0bmw@mail.gmail.com>
From: Ted Hardie <ted.ietf@gmail.com>
To: IETF <ietf@ietf.org>
Content-Type: multipart/alternative; boundary="e89a8f502ec23716fa051adb84bd"
Archived-At: <http://mailarchive.ietf.org/arch/msg/dnsop/3uB5cTYzMrerGOiVlDJbzrukSeI>
X-Mailman-Approved-At: Tue, 14 Jul 2015 13:18:13 -0700
Cc: dnsop@ietf.org, IETF-Announce <ietf-announce@ietf.org>
Subject: Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tld-00.txt> (The .onion Special-Use Domain Name) to Proposed Standard
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 14 Jul 2015 20:16:46 -0000
On Tue, Jul 14, 2015 at 12:24 PM, The IESG <iesg-secretary@ietf.org> wrote: > > The IESG has received a request from the Domain Name System Operations WG > (dnsop) to consider the following document: > - 'The .onion Special-Use Domain Name' > <draft-ietf-dnsop-onion-tld-00.txt> as Proposed Standard > > The IESG plans to make a decision in the next few weeks, and solicits > final comments on this action. Please send substantive comments to the > ietf@ietf.org mailing lists by 2015-08-11. Exceptionally, comments may be > sent to iesg@ietf.org instead. In either case, please retain the > beginning of the Subject line to allow automated sorting. > > Abstract > > This document uses the Special-Use Domain Names registry to register the > '.onion' Top Level Domain (TLD) for the Tor Network. This is deemed > necessary > for hosts on the ToR network to apply for and receive legitimate SSL > Certificates. > > Speaking as an individual only, I do not believe that this request is well-formed. In May of 2000, the IAB of the time issued RFC 2826, which provided a technical commentary on the value of the unique DNS root. Among its statements is this: The DNS fulfills an essential role within the Internet protocol environment, allowing network locations to be referred to using a label other than a protocol address. I believe that .onion is, essentially, a way for structuring protocol addresses so that they appear to be DNS names. It does not conform to the delegation model of the DNS, and it requires special knowledge on the part of the handler to understand it. The authors of the document propose to register it in the DNS under the rubric of RFC 6761, which says: If it is determined that special handling of a name is required in order to implement some desired new functionality, then an IETF "Standards Action" or "IESG Approval" specification [RFC5226 <https://tools.ietf.org/html/rfc5226>] MUST be published describing the new functionality. The specification MUST state how implementations determine that the special handling is required for any given name. This is typically done by stating that any fully qualified domain name ending in a certain suffix (i.e., falling within a specified parent pseudo- domain) will receive the special behaviour. In effect, this carves off a sub-tree of the DNS namespace in which the modified name treatment rules apply, analogous to how IP multicast [RFC1112 <https://tools.ietf.org/html/rfc1112>] or IP link-local addresses [RFC3927 <https://tools.ietf.org/html/rfc3927>] [RFC4862 <https://tools.ietf.org/html/rfc4862>] carve off chunks of the IP address space in which their respective modified address treatment rules apply. I do not believe this document is sufficient to describe the new functionality; the primary description is actually in an informational reference, [Dingledine2004]. <https://www.onion-router.net/Publications/tor-design.pdf>This does not appear, at least to me, to meet the requirements set out in the registration document. Further, I believe this stretches the "special handling" requirement of RFC 6761 to the breaking point. This does not describe special handling _within the DNS_, but instead removes a portion of the global namespace from the DNS at all. To me, at least, this does not seem to me to meet the analogy RFC 6761 provides to IP multicast ranges or local addresses. Whether it is permitted or not by RFC 6761, it is a bad idea. My opinion only, Ted Hardie > The file can be obtained via > https://datatracker.ietf.org/doc/draft-ietf-dnsop-onion-tld/ > > IESG discussion can be tracked via > https://datatracker.ietf.org/doc/draft-ietf-dnsop-onion-tld/ballot/ > > > No IPR declarations have been submitted directly on this I-D. > > > >
- [DNSOP] Last Call: <draft-ietf-dnsop-onion-tld-00… The IESG
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Ted Hardie
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Stephane Bortzmeyer
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… David Conrad
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Patrik Fältström
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Edward Lewis
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Stephane Bortzmeyer
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Stephane Bortzmeyer
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Bob Harold
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Edward Lewis
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… hellekin
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… hellekin
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Hugo Maxwell Connery
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Ted Lemon
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Ted Lemon
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Richard Barnes
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Edward Lewis
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Ted Lemon
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Edward Lewis
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Ted Lemon
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… John Levine
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Edward Lewis
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… David Conrad
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… hellekin
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Rubens Kuhl
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Francisco Obispo
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Ted Lemon
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Ted Lemon
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Ted Lemon
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Francisco Obispo
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Ted Lemon
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Francisco Obispo
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Ted Lemon
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Francisco Obispo
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Joe Hildebrand
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… hellekin
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Hugo Maxwell Connery
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… hellekin
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Tom Ritter
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Ted Lemon
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Richard Barnes
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Edward Lewis
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… David Conrad
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… David Conrad
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Paul Vixie
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… David Conrad
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Tim Wicinski
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Paul Vixie
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… joel jaeggli
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Andrew Sullivan
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Andrew Sullivan
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… David Conrad
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… hellekin
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Joseph Lorenzo Hall
- Re: [DNSOP] Stability of identifiers (Was: Last C… joel jaeggli
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… joel jaeggli
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… joel jaeggli
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Hugo Maxwell Connery
- [DNSOP] Stability of identifiers (Was: Last Call:… Stephane Bortzmeyer
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Stephane Bortzmeyer
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Stephane Bortzmeyer
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Eliot Lear
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Stephane Bortzmeyer
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… David Conrad
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… David Conrad
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Richard Barnes
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… hellekin
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Hugo Maxwell Connery
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… hellekin
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Eliot Lear
- [DNSOP] namespace control (was Re: Last Call: <dr… David Conrad
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… hellekin
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Paul Vixie
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Paul Vixie
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… hellekin
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Paul Vixie
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Francisco Obispo
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Rubens Kuhl
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… hellekin
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Ted Lemon
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Rubens Kuhl
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Ted Lemon
- Re: [DNSOP] what's in .alt, was Last Call: <draft… John Levine
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Ted Lemon
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… David Conrad
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Ted Lemon
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… John Levine
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… joel jaeggli
- Re: [DNSOP] what's in .alt, was Last Call: <draft… Paul Vixie
- [DNSOP] what's in .alt, was Last Call: <draft-iet… Hugo Maxwell Connery
- Re: [DNSOP] what's in .alt, was Last Call: <draft… Hugo Maxwell Connery
- Re: [DNSOP] what's in .alt, was Last Call: <draft… John R Levine
- Re: [DNSOP] what's in .alt, was Last Call: <draft… Paul Vixie
- Re: [DNSOP] what's in .alt, was Last Call: <draft… John R Levine
- Re: [DNSOP] what's in .alt, was Last Call: <draft… Bob Bownes -Seiri
- Re: [DNSOP] what's in .alt, was Last Call: <draft… John R Levine
- Re: [DNSOP] what's in .alt, was Last Call: <draft… Paul Vixie
- Re: [DNSOP] what's in .alt, was Last Call: <draft… John R Levine
- Re: [DNSOP] what's in .alt, was Last Call: <draft… joel jaeggli
- Re: [DNSOP] what's in .alt, was Last Call: <draft… Hugo Maxwell Connery
- Re: [DNSOP] what's in .alt, was Last Call: <draft… Andrew Sullivan
- Re: [DNSOP] what's in .alt, was Last Call: <draft… Christian Grothoff
- Re: [DNSOP] what's in .alt, was Last Call: <draft… Steve Crocker
- Re: [DNSOP] what's in .alt, was Last Call: <draft… Steve Crocker
- Re: [DNSOP] what's in .alt, was Last Call: <draft… Paul Vixie
- Re: [DNSOP] what's in .alt, was Last Call: <draft… Patrik Fältström
- Re: [DNSOP] what's in .alt, was Last Call: <draft… David Conrad
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Florian Weimer
- Re: [DNSOP] what's in .alt, was Last Call: <draft… Paul Vixie
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… David Cake
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… David Cake
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… David Cake
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… David Cake
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… David Cake
- Re: [DNSOP] what's in .alt, was Last Call: <draft… David Cake
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Eliot Lear
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… David Conrad
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Patrik Fältström
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Alec Muffett
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Eliot Lear
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… John Levine
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… hellekin
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Bob Harold
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Ian Maddison
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… John C Klensin
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… David Cake
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Jacob Appelbaum
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Edward Lewis
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Wendy Seltzer
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Edward Lewis
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Chris Baker
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Edward Lewis
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Mark Andrews
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Alec Muffett
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Ted Hardie
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Alec Muffett
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… hellekin
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Ted Hardie
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… John Levine
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Alec Muffett
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Steve Crocker
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Mark Andrews
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Joe Hildebrand
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… John R Levine
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Alec Muffett
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Darcy Kevin (FCA)
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Mark Nottingham
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Alec Muffett
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Andrew Sullivan
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Sam Hartman
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Darcy Kevin (FCA)
- Re: [DNSOP] Last Call: <draft-ietf-dnsop-onion-tl… Roy T. Fielding