Re: [DNSOP] Call for Adoption: Structured Data for Filtered DNS

tirumal reddy <kondtir@gmail.com> Tue, 24 January 2023 06:01 UTC

Return-Path: <kondtir@gmail.com>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4B53EC15152D; Mon, 23 Jan 2023 22:01:02 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.094
X-Spam-Level:
X-Spam-Status: No, score=-2.094 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id QPF7TKwtTX1J; Mon, 23 Jan 2023 22:00:58 -0800 (PST)
Received: from mail-lf1-x12f.google.com (mail-lf1-x12f.google.com [IPv6:2a00:1450:4864:20::12f]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 735C8C14CE51; Mon, 23 Jan 2023 22:00:58 -0800 (PST)
Received: by mail-lf1-x12f.google.com with SMTP id a11so21855777lfg.0; Mon, 23 Jan 2023 22:00:58 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20210112; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=SDjQbvl/ROxi+fZr7ChavSR9oyqmLQjArTno/WB2cu4=; b=UJI+V5is7j2Egq13T+1AP1F9Iq/Yxbtlz5ivTdSL+VT7r7uKOl+ZLZ0R22Lit/KkYA fYecaZNmDNVYNqii3854Oe8QP9p+qWcVkRpLHXcU9ePMjUAgn7SmeElhdayZIZxzxwoc 3QH9czbjDTPASJaJbUoYZfsluh7u6dy4ZL1KMTIJ2dfVB68Z/CMt1RQ8RKs1stmsW+VE EP3Yf/z8b26ttFAfvp+EpbeH4rBIQmR8s0mD4ex6tSvGuz2mi6hA2OwIa/GiM0DEdXvV 0fTTpf4yghNS6lOa4ASLHztMJUzrFz/E3CpkILaDIix2LFFDwer43ecHHXZoq+DI1wT9 G9CQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-message-state:from:to:cc:subject:date:message-id :reply-to; bh=SDjQbvl/ROxi+fZr7ChavSR9oyqmLQjArTno/WB2cu4=; b=nAGLX9Av9QK+mnrCUTF2xIeyEJzD6yLsWT1UNwHsBn2bJd/cqRfG+Xf9xFA/eqq0+T ZrPCZCljN1psu/sGsLC/d0Mj0G3wdSrlBpf377YREEHJsYNcB9XECQM5gzu1qZ4sDBHA vKkiEj+JUEtqEKT8uUDKYUp235OaIdvKMTVyqgYqL7HH9d3zUcLc4D79vmSw6JilAih5 jveMLrdl3aIuyl5Z9+ADiTQmEf54Bqz8XZI+Z2xaIs00dwuikrasHHqJclNmMx+K63Ze B4KdxfXDJkSqU4rNf/ZfvoZMWq0zzbhAM1K6nsX5p4GtPMD3PS8uZRSFBnV5aNcTOx4S Vltg==
X-Gm-Message-State: AFqh2koIF4VBtapmzGKok/hEX14DoeDva57YUJjLMImOpKOmGj162ag+ uWX84zfoXBiF2ljhNh1yHesnXdCEp3EcX5CmKfo=
X-Google-Smtp-Source: AMrXdXuV5Q0p9rWKl1iJgptU6DzU13HRuK9ed+A1uJ/iy9uDlyDbMuUUX218Wgk1iFbimjO5/zH2kNNXP4CJLIgxKmI=
X-Received: by 2002:a05:6512:2241:b0:4d5:8342:9424 with SMTP id i1-20020a056512224100b004d583429424mr1344546lfu.330.1674540056001; Mon, 23 Jan 2023 22:00:56 -0800 (PST)
MIME-Version: 1.0
References: <CADyWQ+Fh2d2MwWCFo6dtkPNQfTCE3d5FXvSGrD8S+t7xgRuqtQ@mail.gmail.com> <aa777f20-d00f-f681-7fa0-2ed9b17f4dad@nohats.ca>
In-Reply-To: <aa777f20-d00f-f681-7fa0-2ed9b17f4dad@nohats.ca>
From: tirumal reddy <kondtir@gmail.com>
Date: Tue, 24 Jan 2023 11:30:44 +0530
Message-ID: <CAFpG3geQq2niAevQpvBtxVPy_qC4K+LbyyBTvX676QiCuuRZbA@mail.gmail.com>
To: Paul Wouters <paul@nohats.ca>
Cc: Tim Wicinski <tjw.ietf@gmail.com>, dnsop <dnsop@ietf.org>, dnsop-chairs <dnsop-chairs@ietf.org>
Content-Type: multipart/alternative; boundary="00000000000033406e05f2fc3de6"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/E7VfIif_kkxVHMQZiqJkIFPNPIY>
Subject: Re: [DNSOP] Call for Adoption: Structured Data for Filtered DNS
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 24 Jan 2023 06:01:02 -0000

On Mon, 23 Jan 2023 at 20:37, Paul Wouters <paul@nohats.ca> wrote:

> On Sun, 22 Jan 2023, Tim Wicinski wrote:
>
> > Subject: [DNSOP] Call for Adoption: Structured Data for Filtered DNS
>
> > This starts a Call for Adoption for
> draft-wing-dnsop-structured-dns-error-page
>
> I have no objection to adoption. I say this instead of "yes" to adoption
> because:
>
>         A client might choose to display the information in the
>         EXTRA-TEXT field if and only if the encrypted resolver has
>         sufficient reputation, according to some local policy (e.g. user
>         configuration, administrative configuration, or a built-in list
>         of respectable resolvers). This limits the ability of a malicious
>         encrypted resolver to cause harm.
>
> While this limits the risks, it also strongly limits its applicability.
> Eg it is mostly useful for wireless carriers and not at all for wifi
> hotspots.
>

In the case of WiFi hotspots , the free-form text of "c" and "o" is not
displayed. However, the client can display the resolver hostname that
blocked the domain, error description for the EDE code and the suberror
description for the "s'" field to the end-user.

-Tiru


>
> I do have a number of other issues with the draft, but those can be
> discussed
> after adoption.
>
> Paul
>
> _______________________________________________
> DNSOP mailing list
> DNSOP@ietf.org
> https://www.ietf.org/mailman/listinfo/dnsop
>