Re: [DNSOP] [Ext] Re: [Doh] Alternate proposal for transport indication in draft-ietf-dnsop-dns-wireformat-http

Martin Thomson <martin.thomson@gmail.com> Wed, 04 April 2018 02:35 UTC

Return-Path: <martin.thomson@gmail.com>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D96CE127867; Tue, 3 Apr 2018 19:35:37 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level:
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id F31PDWPVuj8J; Tue, 3 Apr 2018 19:35:35 -0700 (PDT)
Received: from mail-ot0-x22c.google.com (mail-ot0-x22c.google.com [IPv6:2607:f8b0:4003:c0f::22c]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 7FB16126CBF; Tue, 3 Apr 2018 19:35:35 -0700 (PDT)
Received: by mail-ot0-x22c.google.com with SMTP id h55-v6so20194152ote.9; Tue, 03 Apr 2018 19:35:35 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc; bh=6GeL72Vb0+g11UUbh5j6Ardi5DUYx+rfVvTF5Pstr28=; b=ccs0sxDmOl6OGZp9/Ph82EHpuPXxgLAC2wWKM8g9VvVINhQLh/K6Dg11E6kjR4M1YU u4OXO5DpmYh9Ke8gkDAl4xXpCTye7aCkNfxmxsBuWNgI7/oL+OYf2y3CR+oLmMpolhyL xjoT/iBQ37tnVSV0/YO8H5NkbrwYTYuYBSmKHDt5HbT+8dXOxFkJ5AV1d+FhoiACeVpo uITkar+rneiHpmZRZbFrFCs3P0zHwGtwtvIBHRdKDfNBWKFhtE76YTax8w4IN8vbaNcV kVzOgMjSA3ZUu9RxlsYUrnsFifXrTCBtPa6s3nGhBCIFz+Nboq2BaeKm3jmy6JCnjZxf JaJQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc; bh=6GeL72Vb0+g11UUbh5j6Ardi5DUYx+rfVvTF5Pstr28=; b=tQmNxlhPLyWbmUW45mYWbTNemCZ5za2TZYLiToiM3A5xVOZuwtlr2Yc0+1xSQhdtWh WzYCCTP3RHOnd0xQraRwyIZPo0Lz1vvne2lew/nMKr0Zzy3TQ8k1rUaGidDaMVTBIWOO XjAribc50ZqyRYhTIqso3G8UA0oJIoVTj8II9nrjCl5GKvzKTNG0HwrOk7tM6ndNMmKX 0F7l78fpcyXxQq2e0uB3GuCXLc6DS3uPV8vbTFKBD+0s/Mr+Kjp30KIi+a5IMMqm4UG+ SbMCcmU4t/hCLWh8Dtj6u+B53qOt1VH6LahQDFBaYc1wbOhk5yG7syVbeADELmAT+8yZ 9i3g==
X-Gm-Message-State: ALQs6tBgPBAH39wloQoeP3r2to5dZ2NvOSz1DONR/UgZZn3jOwZ7rSha HyV0IrVXNzOJcOKYNjuHabdT9iOo+RBfhBGEtqgLZMVP
X-Google-Smtp-Source: AIpwx4/e4K6S3MFb3YcLWmKO7R3dTD1I3m9M4ol3hgZu8Oj7BinP79u1fz736lmXALAoxchEdhHDvhqzZqwTtaKfc24=
X-Received: by 2002:a9d:2a09:: with SMTP id t9-v6mr1298252ota.392.1522809334746; Tue, 03 Apr 2018 19:35:34 -0700 (PDT)
MIME-Version: 1.0
Received: by 2002:a9d:ac7:0:0:0:0:0 with HTTP; Tue, 3 Apr 2018 19:35:34 -0700 (PDT)
In-Reply-To: <19BED07A-942E-4A46-93A6-09770083EFF9@icann.org>
References: <152168039295.5550.9572034766968749020.idtracker@ietfa.amsl.com> <CAAObRXLm3c-p9rZkn6H6tcEoh3-UT5JW06NXQ_FMyyr2NFMmyw@mail.gmail.com> <23219.33838.166003.614689@gro.dd.org> <CAAObRX+xF5SwVd3x3iXSWd-A0Kpr_ubbOJzn0yTrSk8pc+tm6Q@mail.gmail.com> <23219.56569.2064.711002@gro.dd.org> <CA+nkc8ANQh2wAr6==eNuM82mbD+E2ELzHGizdqF_sGdY-kkOqg@mail.gmail.com> <5AB3E3B7.3080607@redbarn.org> <69AA6C5D-D348-4956-8A31-FE1EC3A2042E@icann.org> <CABkgnnX2jGY_JpVbqJuQdDVUyVzsuM_2CDg4nppfqQHZQm0F+w@mail.gmail.com> <CAAObRXKHhk51DxNt5uiYB0gunJ=DNde2j9FJSU=Ky2m4Q1UkhQ@mail.gmail.com> <CABkgnnVL0XaUDS-WzDGaN9-kLx9p3x1+UVuWhvx=Zyo5oRos+w@mail.gmail.com> <19BED07A-942E-4A46-93A6-09770083EFF9@icann.org>
From: Martin Thomson <martin.thomson@gmail.com>
Date: Wed, 04 Apr 2018 12:35:34 +1000
Message-ID: <CABkgnnX-=n-reO9yjA8a2pHAD+JtoS5wX1w-dXMnDFdt4HXu-g@mail.gmail.com>
To: Paul Hoffman <paul.hoffman@icann.org>
Cc: dnsop <dnsop@ietf.org>, DoH WG <doh@ietf.org>
Content-Type: text/plain; charset="UTF-8"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/6kkKpi_HGUJ0X4yVvSXFK9gh-KQ>
Subject: Re: [DNSOP] [Ext] Re: [Doh] Alternate proposal for transport indication in draft-ietf-dnsop-dns-wireformat-http
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 04 Apr 2018 02:35:38 -0000

On Tue, Apr 3, 2018 at 11:27 PM, Paul Hoffman <paul.hoffman@icann.org> wrote:
> Martin: Are you saying that you want DOH to remove the optional parameter from the application/dns-udpwireformat registration? If so, what do you propose for the DNSOP WG?

Right now, abandon draft-ietf-dnsop-dns-wireformat-http.  But I'll
concede that I'm probably missing something.

By my current understanding, draft-ietf-dnsop-dns-wireformat-http is
indistinguishable from a specific implementation of
draft-ietf-doh-dns-over-https.  That is, if a DOH server wanted to
service all its queries by forwarding requests to a resolver [1], I
can't see how that would be disallowed by DOH, and that's exactly what
draft-ietf-dnsop-dns-wireformat-http appears to describe.

Convince me that this isn't the case (or not, and I'll be in the rough on this).

--Martin

[1] ...after randomizing the ID.