comments on dnsop-ipv6-dns-issues-00

Pekka Savola <pekkas@netcore.fi> Sun, 17 November 2002 21:55 UTC

Received: from nic.cafax.se (nic.cafax.se [192.71.228.17]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id QAA26207 for <dnsop-archive@lists.ietf.org>; Sun, 17 Nov 2002 16:55:21 -0500 (EST)
Received: from nic.cafax.se (localhost [127.0.0.1]) by nic.cafax.se (8.12.5/8.12.5) with ESMTP id gAHLfFcE023471 for <dnsop-outgoing@nic.cafax.se>; Sun, 17 Nov 2002 22:41:15 +0100 (MET)
Received: by nic.cafax.se (8.12.5/8.12.5/Submit) id gAHLfF3Q023470 for dnsop-outgoing; Sun, 17 Nov 2002 22:41:15 +0100 (MET)
X-Authentication-Warning: nic.cafax.se: majordom set sender to owner-dnsop@cafax.se using -f
Received: from netcore.fi (netcore.fi [193.94.160.1]) by nic.cafax.se (8.12.5/8.12.5) with ESMTP id gAHLfEcE023465 for <dnsop@cafax.se>; Sun, 17 Nov 2002 22:41:14 +0100 (MET)
Received: from localhost (pekkas@localhost) by netcore.fi (8.11.6/8.11.6) with ESMTP id gAHLfEe11490 for <dnsop@cafax.se>; Sun, 17 Nov 2002 23:41:14 +0200
Date: Sun, 17 Nov 2002 23:41:13 +0200
From: Pekka Savola <pekkas@netcore.fi>
To: dnsop@cafax.se
Subject: comments on dnsop-ipv6-dns-issues-00
Message-ID: <Pine.LNX.4.44.0211172335320.11375-100000@netcore.fi>
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset="US-ASCII"
Sender: owner-dnsop@cafax.se
Precedence: bulk

Hello,

As an overview, I'm very happy about the direction of this draft -- 
especially the recommended action in IPv4/IPv6 name space issues.

Comments.

      - every single DNS zone SHOULD be served by at least an IPv4
      reachable DNS server.

==> s/an/one/

8.  DNSsec

   There is nothing specific to IPv6 or IPv4 in DNSsec.

==> perhaps it would be appropriate that there are IPv6 specifications, 
and more possibly on the way, which break DNSsec.

9. Security considerations

   Using wildcard DNS records in the reverse path tree may have some
   implication when used in conjunction with DNSsec.

==> add something to the effect of "Security considerations for referenced 
documents are described in those memos and are not replicated here."

   [RFC2766] Network Address Translation - Protocol Translation (NAT-
   PT). G.  Tsirtsis, P. Srisuresh. February 2000.

   [NAT-PTissues] Issues with NAT-PT DNS ALG in RFC2766, A. Durand,
   draft-durand-natpt-dns-alg-issues-00.txt, work in progress.

   [NAT64] NAT64 - NAT46, A. Durand, draft-durand-ngtrans-
   nat64-nat46-00.txt, work in progress.

==> these, at least, weren't referenced in the main body (intended to be 
part of DNSsec?).

   [IPv6ADDRARCH] IP Version 6 Addressing Architecture, R. Hinden,
   draft-ipngwg-addr-arch-v3-09.txt, work in progress.

==> 11.

-- 
Pekka Savola                 "Tell me of difficulties surmounted,
Netcore Oy                   not those you stumble over and fall"
Systems. Networks. Security.  -- Robert Jordan: A Crown of Swords


#----------------------------------------------------------------------
# To unsubscribe, send a message to <dnsop-request@cafax.se>.