Re: [DNSOP] Adoption and Working Group Last Call for draft-appelbaum-dnsop-onion-tld

Bob Harold <rharolde@umich.edu> Thu, 21 May 2015 16:55 UTC

Return-Path: <rharolde@umich.edu>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2120D1A0004 for <dnsop@ietfa.amsl.com>; Thu, 21 May 2015 09:55:24 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.578
X-Spam-Level:
X-Spam-Status: No, score=-0.578 tagged_above=-999 required=5 tests=[BAYES_05=-0.5, FM_FORGED_GMAIL=0.622, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Iw8LZJnzorYx for <dnsop@ietfa.amsl.com>; Thu, 21 May 2015 09:55:21 -0700 (PDT)
Received: from mail-yk0-f173.google.com (mail-yk0-f173.google.com [209.85.160.173]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8AB581A000A for <dnsop@ietf.org>; Thu, 21 May 2015 09:55:21 -0700 (PDT)
Received: by ykec202 with SMTP id c202so28057533yke.2 for <dnsop@ietf.org>; Thu, 21 May 2015 09:55:20 -0700 (PDT)
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:in-reply-to:references:date :message-id:subject:from:to:cc:content-type; bh=RzWSL3rfJDvmDKKXx9RCksEOSTvHsxgGL9c8aZFk9bQ=; b=Kim+TnBb7SYoRYWk2LBF+qsp74IfTQC+ZCldNODOrh63KQ0Q7UV7CLj1J7ifHeHM58 a7SbdRGDJ/Vy7OMXOLrvJD8w/6w71FYxzgmWhkb2nx8RX0tLrIlPGKUqI4EwKsf038x5 kcsmxy0aEstTEmUuWhv9GU42w2m7PlE+cIDAYqa8gXPpRXdvcba1lOAgk8b8bx1v4geD MWTqirpseAsYSuaLaOJ+QVoFR5jHcWu3WLUDQvBqa+QWx2XnzoAP14ysVymP1dd5mU+5 dyfOjrxPvLm+Uo4PG+IgWob+RP4XMkExFdXuXA3C0kWjOb/NWcDRGnG7O9VbZumr7Hmd a05A==
X-Gm-Message-State: ALoCoQmgVW3yBlcMfpTdKtCEgoqc36sWnFoyMPBlIdTp+adekd9U4tyhXuVL+Tj7ISmb/pt6392j
MIME-Version: 1.0
X-Received: by 10.236.209.42 with SMTP id r30mr3567879yho.5.1432227320703; Thu, 21 May 2015 09:55:20 -0700 (PDT)
Received: by 10.129.76.144 with HTTP; Thu, 21 May 2015 09:55:20 -0700 (PDT)
In-Reply-To: <5A8378EF-97B3-44AE-B6E7-4873D68B18F6@hopcount.ca>
References: <555CC061.7040109@gmail.com> <5A8378EF-97B3-44AE-B6E7-4873D68B18F6@hopcount.ca>
Date: Thu, 21 May 2015 12:55:20 -0400
Message-ID: <CA+nkc8C+VpTeoLvgkum1S6GJJPWFRE3Hxk-RLB4UwuCWa149_w@mail.gmail.com>
From: Bob Harold <rharolde@umich.edu>
To: Joe Abley <jabley@hopcount.ca>
Content-Type: multipart/alternative; boundary="089e01537ae2b0441205169a68fe"
Archived-At: <http://mailarchive.ietf.org/arch/msg/dnsop/3yryCRCnGY9tUlekSTFLlEE2WaI>
Cc: dnsop <dnsop@ietf.org>
Subject: Re: [DNSOP] Adoption and Working Group Last Call for draft-appelbaum-dnsop-onion-tld
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 21 May 2015 16:55:24 -0000

On Wed, May 20, 2015 at 1:55 PM, Joe Abley <jabley@hopcount.ca> wrote:

> ...
> I would also support (as I have heard others say before, and as I think I
> have also said) a separate document that provides advice to anybody else
> planning to deploy code that uses a DNS-like namespace that is not the DNS.
> Such people should either make their names unambiguously different from
> those used in the DNS, or should anchor them somewhere else in the
> namespace where defensive registrations in the DNS are less contentious.
> For example, if the Tor project had used "onion.eff.org" instead of
> "onion", we would not be having this conversation. Making such guidance
> available would make it far easier to deal with the future possibility that
> a decision with "onion" would set an unfortunate precedent.
>
...
The "onion.eff.org" idea only solves half of the problems - it would
prevent others from using the domain for something else, but it fails to
provide the required privacy - part of the requirement is that the onion
names NOT be sent to DNS servers at all, for privacy.

 --
Bob Harold