Re: [DNSOP] Using NSEC3 for opt-out, was Re: Comments regarding the NSEC5

Patrik Fältström <paf@frobbit.se> Sun, 15 March 2015 18:36 UTC

Return-Path: <paf@frobbit.se>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id BD4121A1B73 for <dnsop@ietfa.amsl.com>; Sun, 15 Mar 2015 11:36:23 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.961
X-Spam-Level:
X-Spam-Status: No, score=-1.961 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HELO_EQ_SE=0.35, MIME_8BIT_HEADER=0.3, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id lRg15iqxP0bO for <dnsop@ietfa.amsl.com>; Sun, 15 Mar 2015 11:36:22 -0700 (PDT)
Received: from mail.frobbit.se (mail.frobbit.se [85.30.129.185]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5C1271A01D8 for <dnsop@ietf.org>; Sun, 15 Mar 2015 11:36:22 -0700 (PDT)
Received: from vpn-client-208.netnod.se (vpn-client-208.netnod.se [192.71.80.208]) by mail.frobbit.se (Postfix) with ESMTPSA id 3E8C22014E; Sun, 15 Mar 2015 19:36:20 +0100 (CET)
Mime-Version: 1.0 (Mac OS X Mail 8.2 \(2070.6\))
Content-Type: multipart/signed; boundary="Apple-Mail=_0ACC49E6-2629-459B-B672-BE49A7B079AD"; protocol="application/pgp-signature"; micalg="pgp-sha1"
X-Pgp-Agent: GPGMail 2.5b5
From: Patrik Fältström <paf@frobbit.se>
In-Reply-To: <1085336065.26227.1426437027452.JavaMail.zimbra@nic.cz>
Date: Sun, 15 Mar 2015 19:36:19 +0100
Message-Id: <7D2937A2-D91B-4EAB-A3E4-EF9576A5CCC6@frobbit.se>
References: <D126F949.9B95%edward.lewis@icann.org> <1085336065.26227.1426437027452.JavaMail.zimbra@nic.cz>
To: Ondřej Surý <ondrej.sury@nic.cz>
X-Mailer: Apple Mail (2.2070.6)
Archived-At: <http://mailarchive.ietf.org/arch/msg/dnsop/81VBiYcmX9GmL-2JJX9rbQO5qO0>
Cc: Edward Lewis <edward.lewis@icann.org>, dnsop@ietf.org
Subject: Re: [DNSOP] Using NSEC3 for opt-out, was Re: Comments regarding the NSEC5
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 15 Mar 2015 18:36:23 -0000

> On 15 mar 2015, at 17:30, Ondřej Surý <ondrej.sury@nic.cz> wrote:
> 
> JFTR .cz was asked by "The Office for Personal Data Protection" to implement measures to protect the personal data for domain holders.  NSEC3 was part of the solution.

Can you explain more how that was part of the solution?

   Patrik