Re: [DNSOP] Interim DNSOP WG meeting on Special Use Names: some reading material

Warren Kumari <warren@kumari.net> Tue, 12 May 2015 13:41 UTC

Return-Path: <warren@kumari.net>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0AB511A875B for <dnsop@ietfa.amsl.com>; Tue, 12 May 2015 06:41:53 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.378
X-Spam-Level:
X-Spam-Status: No, score=-1.378 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, FM_FORGED_GMAIL=0.622, J_CHICKENPOX_41=0.6, RCVD_IN_DNSWL_LOW=-0.7] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id uwV5RIBd1DcC for <dnsop@ietfa.amsl.com>; Tue, 12 May 2015 06:41:52 -0700 (PDT)
Received: from mail-wi0-f171.google.com (mail-wi0-f171.google.com [209.85.212.171]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EB2A71B2CF3 for <dnsop@ietf.org>; Tue, 12 May 2015 06:41:48 -0700 (PDT)
Received: by wicmc15 with SMTP id mc15so54480022wic.1 for <dnsop@ietf.org>; Tue, 12 May 2015 06:41:47 -0700 (PDT)
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:in-reply-to:references:date :message-id:subject:from:to:cc:content-type :content-transfer-encoding; bh=6GXOs9Pi5xpfVhU+2BSAYBabVlyeJPHeoK6bLZ66IQI=; b=jdbmKHYngCf/zr11pPeooMcO9oGMIPSGsD7/n5NVbGWjPOBmtI6iV4b+H4yoNNRg7g YjG+2kzOhF5InOu3w91opVkaGd1FMp0NICpAXxIVT69HW5ou1hZ7UaIonT1osVyvK4vV BXV7tpbDW+ZSU1uQITNiM/OXjHKeKjgkDhAWr9UF6PIntW4y6Eq36GORWxwAOaG+FZaL QMq9emjaTbUgE/mPsEt8Ws/RffUcH6X7nNzJsxBB4U8VMsf416e8PaqfG2yk/9cJDXKG 2skM3HrXfkog053xniP/pyUcw6sv3nTSpyttvKtTwWPL3J0w3tSSFRAH/8wjtMNiZjmJ kfTA==
X-Gm-Message-State: ALoCoQn8Z7RfzrlM4tuWO9Bk/dlsqbfd2P2RX4UECkj7rLaxwE9UVRS0+zmfCLtT6Jgsu/ZbWyCE
MIME-Version: 1.0
X-Received: by 10.180.108.100 with SMTP id hj4mr5350745wib.22.1431438107733; Tue, 12 May 2015 06:41:47 -0700 (PDT)
Received: by 10.194.47.36 with HTTP; Tue, 12 May 2015 06:41:47 -0700 (PDT)
In-Reply-To: <A789E52D-9682-42C7-AF04-A25C8C43450F@nominum.com>
References: <20150508193400.55273.qmail@ary.lan> <FF464258-0C33-45CC-A684-BAB7BCE8A8FB@gmail.com> <alpine.OSX.2.11.1505082118060.31363@ary.lan> <0902600F-134B-4688-9CDD-1ACB23431DDE@vpnc.org> <20150512010624.GC74841@mx2.yitter.info> <62970575-A605-4B3E-9E98-D760B47E8532@isoc.org> <CAHw9_i+jpobNKtim=Gw3ZAjaU6ff3A-SHVrGHqn0AW7-WOwsNQ@mail.gmail.com> <A789E52D-9682-42C7-AF04-A25C8C43450F@nominum.com>
Date: Tue, 12 May 2015 15:41:47 +0200
Message-ID: <CAHw9_iL8CkQ8VwaCXza+vsYh990MJWsdF0crAdq2qLbJdhG6-Q@mail.gmail.com>
From: Warren Kumari <warren@kumari.net>
To: Ted Lemon <Ted.Lemon@nominum.com>
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable
Archived-At: <http://mailarchive.ietf.org/arch/msg/dnsop/9tE8bwKq_ZGCtsxAjOcsG1wLVbE>
Cc: "dnsop@ietf.org" <dnsop@ietf.org>, Dan York <york@isoc.org>, Andrew Sullivan <ajs@anvilwalrusden.com>
Subject: Re: [DNSOP] Interim DNSOP WG meeting on Special Use Names: some reading material
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 12 May 2015 13:41:53 -0000

On Tue, May 12, 2015 at 3:17 PM, Ted Lemon <Ted.Lemon@nominum.com> wrote:
> On May 12, 2015, at 9:12 AM, Warren Kumari <warren@kumari.net> wrote:
>>
>> ... and this is some of the point of the .ALT pseudo-TLD -- if you
>> want to use a "TLD" that does not get resolved in the DNS, make your
>> namespace look like YYY.ALT. This *will* leak into the DNS, but should
>> be "dropped" (NXD) at the first resolver (helping with privacy and
>> general pollution issues). Now, if 5 people or 5,000,000 people use
>> it, it doesn't matter -- it never needs to be made a special use name,
>> because it isn't really in the DNS name space.
>
> .alt is good for experiments,

Yes -- and I originally had some text in my mail about that, then
removed it because I didn't want to open this can of worms.

One of the uses is "Make your new namespace as YYY.ALT, and get some
folk using it. Once you can demonstrate that you have a bunch of users
(like Onion / ToR), you will have a much much easier time convincing
the IESG that you should get YYY as a special use name, and slowly
migrate over to that". If you have designed your protocol / system
cleverly, the migration may be easy^w not horrendous...


>  but I don't see it gaining popularity as a replacement for genuine special-use names. Compare .home to .home.alt, for example. There is elegance in the implementation, and there is elegance in the presentation, and I think the latter inevitably wins, whether we want it to or not.

Yup. But having 300 people all asking for $cool_string gets, um,
tedious. Having a first pass, so that only those who actually
demonstrate that someone want to use it means that (hopefully) you end
up with fewer applicants.

Now, you still have the "metric" problem. How do you know that there
really are "enough" users of YYY.ALT to justify reserving YYY (or, YYZ
if YYY is already in use)? Dunno - but, you already have this issue. I
think a large amount of it comes down to humans making a decision --
I, you, and my auntie Eve have all heard of Onion. It's clear that
*someone* is using it. Perhaps that's the best we can do...

W




-- 
I don't think the execution is relevant when it was obviously a bad
idea in the first place.
This is like putting rabid weasels in your pants, and later expressing
regret at having chosen those particular rabid weasels and that pair
of pants.
   ---maf