Re: [DNSOP] draft-ietf-dnsop-kskroll-sentinel-07

"Wessels, Duane" <dwessels@verisign.com> Fri, 23 March 2018 15:19 UTC

Return-Path: <dwessels@verisign.com>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 8261A127337 for <dnsop@ietfa.amsl.com>; Fri, 23 Mar 2018 08:19:15 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.31
X-Spam-Level:
X-Spam-Status: No, score=-4.31 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=verisign.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id bMckpSl3mxHo for <dnsop@ietfa.amsl.com>; Fri, 23 Mar 2018 08:19:14 -0700 (PDT)
Received: from mail3.verisign.com (mail3.verisign.com [72.13.63.32]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 03E531200C5 for <dnsop@ietf.org>; Fri, 23 Mar 2018 08:19:13 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=verisign.com; l=1318; q=dns/txt; s=VRSN; t=1521818354; h=from:to:cc:date:message-id:references:in-reply-to: content-id:content-transfer-encoding:mime-version:subject; bh=IBXGJXFgz3Esuu4H4/aoO4/majuqAlQeG0obklfxXgs=; b=Rg5hw3PXMCehmG5cGKHEXEO7EI760hQLFOa8fUyqIvf6GVfIdvYi3pWd X6FrKZdcNluM1Xoabi9Jk2scwGKVf4nO0cMNPDntWCDQ6eyH+r58Yw6zZ YDNlGi9wgsKc5wy4qSvUCmPDaAwNPUXBHV7r/TVhlDqHLkpUwyJFBgZwa kIAdmImV3olsVNaMu33/UsuKTSuRa1dg1JSNHLoAir7Xeba11Gnnc4xjT 765rZxdcXskDWA17K8fbFUL/ur7XN2TuQnnRicx5it0rLwJ5uNvMknh1S 1v4eke/kznNZGEBY12DuEwSQ0C5D7IKZPoc8piPR0Y6jXPPU6o2VO+Y4J A==;
X-IronPort-AV: E=Sophos;i="5.48,350,1517875200"; d="scan'208";a="4186984"
IronPort-PHdr: 9a23:IMeAlRMyd6Y97Myine8l6mtUPXoX/o7sNwtQ0KIMzox0IvTzrarrMEGX3/hxlliBBdydt6ofzbKO+4nbGkU4qa6bt34DdJEeHzQksu4x2zIaPcieFEfgJ+TrZSFpVO5LVVti4m3peRMNQJW2aFLduGC94iAPERvjKwV1Ov71GonPhMiryuy+4ZLebxlGiTanfb9+MAi9oBnMuMURnYZsMLs6xAHTontPdeRWxGdoKkyWkh3h+Mq+/4Nt/jpJtf45+MFOTav1f6IjTbxFFzsmKHw65NfqtRbYUwSC4GYXX3gMnRpJBwjF6wz6Xov0vyDnuOdxxDWWMMvrRr0vRz+s87lkRwPpiCcfNj427mfXitBrjKlGpB6tvgFzz5LIbI2QMvd1Y6HTcs4ARWdZXshfSTFPAp+yYYUMAeoOP+dYoJXyqVQBtha+GRKjBObzxjNUmnP736s32PkhHwHc2wwgGsoDvHrUo9rrL6cSSv66zK3TzTnbcvhY1yr955LOch8/r/2HQLV9ftffyEYxDAPFlUufqYj+Pz6OyOQCrXKb7+t7VeKuhG4nrRt9rSSoxscpk4TEgJ8exF7D9SV82ok1JNu4RVZ6YdG6DJtQuTuWN4xsQsMtRWxjpSU0yqUetJKmYCQG0okryhzRZvCdboSF4hzuWPyPLTp3hH9pYK+ziwqo/US9yODwStO43EtFoydGiNXAq3MA2hrO4cadUPR95F2u2TOX2gDW7eFLPF47mLLAK54k3r4wjp0TsVnfHiPumEX5kquWdkI89+ez8eTnZKjqppuTNo9xkA7+M6AumsuiAeQkLgQCQXKX+fqi2735/E35W7RKjvIwkqXDrJ/aIsEbqra4Aw9TzIkj9w6yAyq63NgCgHUKLlxIdAiag4XpNVzCOu70APi/jli0lTdk3fHGPrnvApXXKXjDla/scqtz6kFC0woz1s5Q55ZPCrwaPvL8RFXxtN3DDh84PAy0xfzrB8l61oMbQW6PGLOWMLvOsV+U4eIiO+yMa5UPuDb+Mfco/P/ujWQlllMHeqmpx5QXYmiiHvt6O0WZfWbsgtAZHGgXuAo+V+vqiEWZXD5SeXmyQ6w86is8CIK8AoeQDryq1bCHxyCjVslaYHtBEniNHGvmMYKeVKFfRjiVJ5orrTEfTrWlUMtp+QynsgKwg+5rMefP4SAcrrr92cJ0/Ozck1c58jkiXJfV6H2EU2whxjBAfDQxxq0q5BUlklo=
X-IPAS-Result: A2EsAQBfGrVa//WZrQpdGQEBAQEBAQEBAQEBAQcBAQEBAYQegRgKg1KWYiERgQCSSoIBBQsYCwmEWQIag3A2FgECAQEBAQEBAgECgQQMgjgkAQ4vHC8BAQEBAQFPAj4sAQEBAQIBAQEhEToLBQkCAgEIDQsCAiYCAgIZDAsVEAIEDgWFBhepC4IghFiDaoIVBQWBA4Qng2Y/gS4MgliDEwEBgXWCajCCJAOXOwMFAppkj0wCBAsCEwGBJSMBggNwFRkhKgGCGIsShT1vjz+BFgEB
Received: from BRN1WNEXCHM01.vcorp.ad.vrsn.com (brn1wnexchm01 [10.173.152.255]) by brn1lxmailout02.verisign.com (8.13.8/8.13.8) with ESMTP id w2NFJCaR023810 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=FAIL); Fri, 23 Mar 2018 11:19:12 -0400
Received: from BRN1WNEXMBX01.vcorp.ad.vrsn.com ([::1]) by BRN1WNEXCHM01.vcorp.ad.vrsn.com ([::1]) with mapi id 14.03.0301.000; Fri, 23 Mar 2018 11:19:12 -0400
From: "Wessels, Duane" <dwessels@verisign.com>
To: dnsop <dnsop@ietf.org>
Thread-Topic: [EXTERNAL] [DNSOP] draft-ietf-dnsop-kskroll-sentinel-07
Thread-Index: AQHTwkG898cQg/WO8kCgK6x1sn3p+KPeMyUA
Date: Fri, 23 Mar 2018 15:19:11 +0000
Message-ID: <2B6DE54A-3814-4DC4-B9BA-864D5DEA75C5@verisign.com>
References: <83786E94-ABCA-43F9-A038-F8F61C93E797@isc.org>
In-Reply-To: <83786E94-ABCA-43F9-A038-F8F61C93E797@isc.org>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.170.148.18]
Content-Type: text/plain; charset="utf-8"
Content-ID: <479FEAFE8C1F644A8D252C88ECC5E7A2@verisign.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/COayPmN1VaSmQLoJk1DDWnocRd0>
Subject: Re: [DNSOP] draft-ietf-dnsop-kskroll-sentinel-07
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 23 Mar 2018 15:19:15 -0000

I agree with Mark, especially about the title.  

For the magic string, I'd like to see it closer to Mark's proposal, but its not a deal breaker.

DW


> On Mar 22, 2018, at 5:55 PM, Mark Andrews <marka@isc.org> wrote:
> 
> This title of this document DOES NOT match reality.
> 
> "A Sentinel for Detecting Trusted Keys in DNSSEC” should be
> replaced by “A Root Key Trust Anchor Sentinel for DNSSEC”.
> 
> kskroll-sentinel-<what>-<id> really needs something other
> than “kskroll” as the first field.  “root-key-sentinal-<what>-<id>”
> really more clearly matches what it does.
> 
> Any other changes that follow from these two changes"
> 
> -- 
> Mark Andrews, ISC
> 1 Seymour St., Dundas Valley, NSW 2117, Australia
> PHONE: +61 2 9871 4742              INTERNET: marka@isc.org
> 
> _______________________________________________
> DNSOP mailing list
> DNSOP@ietf.org
> https://www.ietf.org/mailman/listinfo/dnsop