Re: [DNSOP] Review of draft-livingood-dns-redirect-00

Jeroen Massar <jeroen@unfix.org> Thu, 16 July 2009 18:48 UTC

Return-Path: <jeroen@unfix.org>
X-Original-To: dnsop@core3.amsl.com
Delivered-To: dnsop@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id BCAE43A6DC3 for <dnsop@core3.amsl.com>; Thu, 16 Jul 2009 11:48:24 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.599
X-Spam-Level:
X-Spam-Status: No, score=-6.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id PbQglyvVCYK2 for <dnsop@core3.amsl.com>; Thu, 16 Jul 2009 11:48:24 -0700 (PDT)
Received: from abaddon.unfix.org (abaddon.unfix.org [194.1.163.39]) by core3.amsl.com (Postfix) with ESMTP id D9A9B3A68B8 for <dnsop@ietf.org>; Thu, 16 Jul 2009 11:48:23 -0700 (PDT)
Received: from [IPv6:2001:41e0:ff42:b00:216:cfff:fe00:e7d0] (spaghetti.ch.unfix.org [IPv6:2001:41e0:ff42:b00:216:cfff:fe00:e7d0]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) (Authenticated sender: jeroen) by abaddon.unfix.org (Postfix) with ESMTPSA id 1CA57402002; Thu, 16 Jul 2009 20:43:51 +0200 (CEST)
X-Virus-Status: Clean
X-Virus-Scanned: clamav-milter 0.95.2 at abaddon
Message-ID: <4A5F74E5.3060708@spaghetti.zurich.ibm.com>
Date: Thu, 16 Jul 2009 20:43:49 +0200
From: Jeroen Massar <jeroen@unfix.org>
Organization: Unfix
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.8.1.22) Gecko/20090605 Lightning/0.9 Thunderbird/2.0.0.22 Mnenhy/0.7.6.666
MIME-Version: 1.0
To: David Conrad <drc@virtualized.org>
References: <C6849631.EF40%Jason_Livingood@cable.comcast.com> <4A5F2085.9000707@spaghetti.zurich.ibm.com> <F82B1DDF-709C-4F3A-8687-0B241B2FD7C6@virtualized.org>
In-Reply-To: <F82B1DDF-709C-4F3A-8687-0B241B2FD7C6@virtualized.org>
X-Enigmail-Version: 0.95.7
OpenPGP: id=333E7C23
Content-Type: multipart/signed; micalg="pgp-sha1"; protocol="application/pgp-signature"; boundary="------------enig0298EBE58D7FD57EF004783D"
Cc: IETF DNSOP WG <dnsop@ietf.org>
Subject: Re: [DNSOP] Review of draft-livingood-dns-redirect-00
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dnsop>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 16 Jul 2009 18:48:24 -0000

David Conrad wrote:
> On Jul 16, 2009, at 5:43 AM, Jeroen Massar wrote:
>> Livingood, Jason wrote:
>>> Please do send me that list of applications.  I would very much like to
>>> describe these use cases in the next version of the draft.
>>
>> Please list "The Internet" as one of them, it kinda encompasses a lot of
>> others too.
> 
> Please.  Enough hyperbole.

Unless you state that "The Internet" is only "The Web", there are other
users of "The Internet" though. Don't try and limit what other people
can do with this public resource.

I suggest that "Internet Providers" that are going to do these kind of
"filtering techniques" rename themselves to "Limited Web Providers".
That is much more appropriate it seems.

Or we'll just have to change IETF into OIETF for the Open Internet ETF.

>> I am *VERY* happy that DNSSEC is moving along perfectly fine
>> which will kill any kind of changing DNS results.
> 
> DNSSEC doesn't touch anything after the validator.  It will have no
> effect on the vast majority of Comcast (or other consumer oriented)
> ISPs' customers.

"The vast majority" aha, so discrimination of the people who do want to
actually have real truthful Internet is acceptable????

I know that certain countries claim to be all about 'freedom' and
'democracy' and I don't know what, but clearly those countries and the
network operators in those countries want to restrict people more than
the countries which simply state that they are doing that on purpose.

As a user of the Internet I *am* running a validating DNSSEC recursor on
my hosts. Thanks to ISC for the DLV :)

I am fairly sure that a lot of other people will also want to do this.

Greets,
 Jeroen