Re: [DNSOP] Alissa Cooper's No Objection on draft-ietf-dnsop-dns-capture-format-08: (with COMMENT)

Joe Abley <jabley@hopcount.ca> Wed, 21 November 2018 02:01 UTC

Return-Path: <jabley@hopcount.ca>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id AEFC7130E18 for <dnsop@ietfa.amsl.com>; Tue, 20 Nov 2018 18:01:59 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level:
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, UNPARSEABLE_RELAY=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=hopcount.ca
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Qpgn0_Udgsil for <dnsop@ietfa.amsl.com>; Tue, 20 Nov 2018 18:01:58 -0800 (PST)
Received: from mail-lj1-x232.google.com (mail-lj1-x232.google.com [IPv6:2a00:1450:4864:20::232]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E35AA127B92 for <dnsop@ietf.org>; Tue, 20 Nov 2018 18:01:57 -0800 (PST)
Received: by mail-lj1-x232.google.com with SMTP id 83-v6so3378093ljf.10 for <dnsop@ietf.org>; Tue, 20 Nov 2018 18:01:57 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=hopcount.ca; s=google; h=from:mime-version:references:in-reply-to:date:message-id:subject:to :cc; bh=Z3YPrrDeuxgf/pGqS/ma7sORahWs4CW73mCgtov3gm8=; b=HOPmLXg3vkDdgYjdz/IP/1P/52P+H43iQGH3EIXmKe3Dh94o2P2eqm5GXuGG9bpB1k VInPr85XzLubU4Sjo7a87UavBMU95PfcbgJOlMxgkYNKQufFFkdH13tNmCeDcNfOTIMD R4jlLYBOwfssO4f4x03AjJ9vpdgBJb3KtSBCQ=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:mime-version:references:in-reply-to:date :message-id:subject:to:cc; bh=Z3YPrrDeuxgf/pGqS/ma7sORahWs4CW73mCgtov3gm8=; b=ZP6PEokdV7d0bf3gbkmQG+OJxIeLRw2fNmxOH4AR09SyNio3/tDa1ay428+FFUr3vs ilIbAPDJYuExTxsVt6VjLDRx+p2RO/ambc6ZRRxik08qzxZOZ0twbrZOsShMN+s/u16N sP22httI6iM310in+G5kHBAQZ1N3kcXJxehhcSY/6pagxAvN/ehNpuQfYKOiwheaOqsP 3Yh0RxSXcYd12ZJuw5JXccWc3RLKvEnTQ0q5n62FpnhbFvAaOWidoaIBIDHae2Tng87/ 7nQRqBE2e+06vYCUUTTPlNat2IheU9ovZPn2fiavjo+F/NhhxGckWZXO0zhLpQhSviVg Sa0w==
X-Gm-Message-State: AA+aEWb951bA7nW3xwpbsYn1BEhoZbOz7qBCRq86yVbUHNWEodU4HRPp t4MKhwOE8A6496Yf5YuaqVzL7//hvuKmnLrXYI5rvA==
X-Google-Smtp-Source: AFSGD/UBk9pfUuBvNCVFJQiPT+2NJoJF4Mn3yE7xwOWSZ/K1sI2qVp/1PAnW9pXqzpz7K6+gmdwWd8y+E+nRQnj1QpE=
X-Received: by 2002:a2e:9849:: with SMTP id e9-v6mr1309782ljj.9.1542765715899; Tue, 20 Nov 2018 18:01:55 -0800 (PST)
Received: from unknown named unknown by gmailapi.google.com with HTTPREST; Tue, 20 Nov 2018 18:01:54 -0800
From: Joe Abley <jabley@hopcount.ca>
Mime-Version: 1.0 (1.0)
References: <154276310324.29833.13160462343514423529.idtracker@ietfa.amsl.com>
In-Reply-To: <154276310324.29833.13160462343514423529.idtracker@ietfa.amsl.com>
Date: Tue, 20 Nov 2018 18:01:54 -0800
Message-ID: <CAJhMdTPTJp3Xk8EjVD2juTU1yF3A__Oez52BweNp4Nu6myV5FA@mail.gmail.com>
To: Alissa Cooper <alissa@cooperw.in>
Cc: The IESG <iesg@ietf.org>, tjw.ietf@gmail.com, dnsop@ietf.org, dnsop-chairs@ietf.org, draft-ietf-dnsop-dns-capture-format@ietf.org
Content-Type: text/plain; charset="UTF-8"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/8TQ1pCsYW0suok31TkwvSMyeYkc>
Subject: Re: [DNSOP] Alissa Cooper's No Objection on draft-ietf-dnsop-dns-capture-format-08: (with COMMENT)
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 21 Nov 2018 02:02:00 -0000

Hi Alissa!

On Nov 20, 2018, at 20:18, Alissa Cooper <alissa@cooperw.in> wrote:

> I support Benjamin's first DISCUSS point. In addition to documenting the
> privacy considerations, I think it's important for this document to be crystal
> clear about who is meant to be doing the data collection -- namely, the server
> operator. There are some statements in the document that otherwise could be
> construed to be encouraging third-party passive monitoring of DNS traffic
> without explaining why, which seems like a problem:

I think it may be worth exploring why that's a problem.

I think a capture format should be oblivious to the circumstances of
the capture; otherwise you're heading down a road well-trodden by such
ludicrous ideas as text format definitions putting restrictions on the
kinds of stories people can write, or scripts that are not to be used
to write particular words.

The usefulness of a capture format is not improved by putting
conditions on its use, and neither is user privacy. The way to privacy
is surely to use transports where clear text is only available where
it needs to be visible.

So I don't understand your comment. (Quite possibly I'm just being
dim; I just got home from Bangkok. I came the long way round.)

I think providing use-cases in the document to illustrate what it's
for us good, but I don't think they should be prescriptive (in any
direction).


Joe