Re: [DNSOP] draft-hzhwm-start-tls-for-dns-00: Starting TLS over DNS

Paul Vixie <paul@redbarn.org> Sat, 15 February 2014 04:58 UTC

Return-Path: <paul@redbarn.org>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 32FFE1A0010; Fri, 14 Feb 2014 20:58:39 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id PQo71zImlT7W; Fri, 14 Feb 2014 20:58:37 -0800 (PST)
Received: from ss.vix.su (ss.vix.su [IPv6:2001:559:8000:cb::2]) by ietfa.amsl.com (Postfix) with ESMTP id 628301A0021; Fri, 14 Feb 2014 20:58:37 -0800 (PST)
Received: from [IPv6:2001:559:8000:cb:4c62:fe7c:58aa:4607] (unknown [IPv6:2001:559:8000:cb:4c62:fe7c:58aa:4607]) (using TLSv1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by ss.vix.su (Postfix) with ESMTPSA id 74FC2EBDCE; Sat, 15 Feb 2014 04:58:35 +0000 (UTC) (envelope-from paul@redbarn.org)
Message-ID: <52FEF407.30405@redbarn.org>
Date: Fri, 14 Feb 2014 20:58:47 -0800
From: Paul Vixie <paul@redbarn.org>
User-Agent: Postbox 3.0.9 (Windows/20140128)
MIME-Version: 1.0
To: Zi Hu <zihu@usc.edu>
References: <CAESS1RPh+UK+r=JzZ9nE_DUqcvNtZiS6TNt1CDN-C0uiU7HP=A@mail.gmail.com>
In-Reply-To: <CAESS1RPh+UK+r=JzZ9nE_DUqcvNtZiS6TNt1CDN-C0uiU7HP=A@mail.gmail.com>
X-Enigmail-Version: 1.2.3
Content-Type: multipart/alternative; boundary="------------040200040506040505050406"
Archived-At: http://mailarchive.ietf.org/arch/msg/dnsop/DhUgRNmqRQ8PcB-WdIcvfqKLmwA
Cc: dnsop@ietf.org, perpass@ietf.org
Subject: Re: [DNSOP] draft-hzhwm-start-tls-for-dns-00: Starting TLS over DNS
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 15 Feb 2014 04:58:39 -0000


Zi Hu wrote:
> We recently posted draft-hzhwm-start-tls-for-dns-00 ("Starting TLS over
> DNS") to explore one proposal to add standard TLS over standard DNS to
> improve privacy.
> http://tools.ietf.org/html/draft-hzhwm-start-tls-for-dns-00
>
> This topic may be of interest to DNSOP and PERPASS.  Some of the authors
> will be at the London IETF and can discuss it at the DNS privacy BOF if
> there is interest.
> ...

this is good work. i recommend it be adopted by the working group, and i
will act as a reviewer.

vixie