[DNSOP] draft-klh-dnsop-rfc8109bis suggested text

Brian Dickson <brian.peter.dickson@gmail.com> Wed, 31 May 2023 22:51 UTC

Return-Path: <brian.peter.dickson@gmail.com>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id ADF96C151540 for <dnsop@ietfa.amsl.com>; Wed, 31 May 2023 15:51:32 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.097
X-Spam-Level:
X-Spam-Status: No, score=-2.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id LxQsm7-p6ngu for <dnsop@ietfa.amsl.com>; Wed, 31 May 2023 15:51:32 -0700 (PDT)
Received: from mail-pf1-x429.google.com (mail-pf1-x429.google.com [IPv6:2607:f8b0:4864:20::429]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4FCBDC15106D for <dnsop@ietf.org>; Wed, 31 May 2023 15:51:32 -0700 (PDT)
Received: by mail-pf1-x429.google.com with SMTP id d2e1a72fcca58-64d3e5e5980so313477b3a.2 for <dnsop@ietf.org>; Wed, 31 May 2023 15:51:32 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20221208; t=1685573491; x=1688165491; h=to:subject:message-id:date:from:in-reply-to:references:mime-version :from:to:cc:subject:date:message-id:reply-to; bh=AdewgqPHhWD87ucKjrg84+qLXBN3xvhP3LkeRZzYGKU=; b=PfGPlOPKhOPav5D/sdxDY32n/diKWoIZWW5XkLT3BIgP76NZ+GN+7qfh77Y3LHpk42 U3IjlKZNGZBYX4hZLKmko29ld5MHkbh5yg4uox1jgIjVb197U7j05ByoFbGRGsI2p0KH vG/GG+Y7aRN3mdcDeFUIDB66pbECmT42PSB0h4eBqK8vJiqjKHtQej/XLG/DXdp1XThb Y+ubO8nkMf4bfzlv8r8RDluuH2rXI34qsPQnCufMfRu3fiBhCITJy3Ce0brdNkkiMf1N xakJmzcBZnQtO0KQ7C8rG/OHln2RVichU1iD+2vdIaXfIT8YwXEsGYfgvR/EAlSeLCM+ pfiw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20221208; t=1685573491; x=1688165491; h=to:subject:message-id:date:from:in-reply-to:references:mime-version :x-gm-message-state:from:to:cc:subject:date:message-id:reply-to; bh=AdewgqPHhWD87ucKjrg84+qLXBN3xvhP3LkeRZzYGKU=; b=BnIAgs6pd9HSl4u2VTRIz8FXZApmm+zWEDk6wfjCPbdeeeirxyVaLuWma8bz6RsrCA KckGLNeabJ1kUPXn5LC41W/2xeJw9FOde2NSpHXsdVzmG7wu9ZSfXZP28GKUyWdmxTOL zzjSymcGPo//2gD6FAek7JQCfuQauXa3U+uWcQinySUKK4PlEICy4VCd8wBzXis/ZnRz vhBHa1JFBS9gcXb56Vt4xe/6Lgc6afib/wKmA8pyG40tbgXCXk4+PdWAN6jOuZua76hx e6v2ox3wgjswRPeyLECe9L47g+GszNaAUUdnYqIPiVvy1PlgKdFa186xT6TfryLtNer6 ckpQ==
X-Gm-Message-State: AC+VfDx659FDQO+bhxkPljFEry2xX0JP7J+O+pdPyaxeo9VKjRc/VApc itBRsEKGLdeKECDZSY7FDsJwTP2+xkw/0Vgd26JhLTWVzPQ=
X-Google-Smtp-Source: ACHHUZ6cRZoN9UN8vRK1KQ85vk7t7WxQ2OdxvjdjQO3ZKvDthSgU3mPeZ5h3t+SFNAISYOkPGIA9XOSGV/GaADpGVSY=
X-Received: by 2002:a05:6a20:3d85:b0:100:60f3:2975 with SMTP id s5-20020a056a203d8500b0010060f32975mr9017729pzi.4.1685573491123; Wed, 31 May 2023 15:51:31 -0700 (PDT)
MIME-Version: 1.0
References: <CADyWQ+E4ZXNQboixRuh3LQc1SQYe_cnbsh=HzMSfEVD=EFG55A@mail.gmail.com>
In-Reply-To: <CADyWQ+E4ZXNQboixRuh3LQc1SQYe_cnbsh=HzMSfEVD=EFG55A@mail.gmail.com>
From: Brian Dickson <brian.peter.dickson@gmail.com>
Date: Wed, 31 May 2023 15:51:20 -0700
Message-ID: <CAH1iCiodNeyHsaSPn47buBT+0gBUO9duZSdYDe_nvAz_RJi7rw@mail.gmail.com>
To: dnsop <dnsop@ietf.org>
Content-Type: multipart/alternative; boundary="0000000000002e6bad05fd052901"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/A7qLUxKQpbEr21ME_Ig-bzwwRVA>
Subject: [DNSOP] draft-klh-dnsop-rfc8109bis suggested text
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 31 May 2023 22:51:32 -0000

I forgot to mention willingness to contribute text.

Here is one suggestion:
Add to section 3 (or under 3.1) text to the effect of:

The recursive resolver SHOULD ensure that the reassembly size advertised is
below the threshold in its immediate network vicinity.
Specifically, if a response with the DF bit set and packet size of the
reassembly size advertised exceeds any MTU, the packet will be dropped by
the network.
This could be the result of the resolver's LAN segment, or its upstream WAN
link(s) within the resolver's ASN, or even an upstream ISP's WAN link(s).

Repeated failures to multiple priming addresses MAY require the resolver to
use a smaller reassembly size in order to receive a response.


This is definitely a corner case (possibly to be included in the
avoid-fragmentation draft as well), but particularly for priming queries,
instances of this failure mode may not be resolved by any other means
beyond reducing the advertised size or retrying over TCP.

Brian

On Wed, May 24, 2023 at 7:04 AM Tim Wicinski <tjw.ietf@gmail.com> wrote:

>
> Please also indicate if you are willing to contribute text, review, etc.
>
>