Re: [DNSOP] DNSOP Call for Adoption draft-vixie-dns-rpz

Warren Kumari <> Tue, 20 December 2016 22:53 UTC

Return-Path: <>
Received: from localhost (localhost []) by (Postfix) with ESMTP id B181C1295E3 for <>; Tue, 20 Dec 2016 14:53:52 -0800 (PST)
X-Virus-Scanned: amavisd-new at
X-Spam-Flag: NO
X-Spam-Score: -2.599
X-Spam-Status: No, score=-2.599 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7] autolearn=ham autolearn_force=no
Authentication-Results: (amavisd-new); dkim=pass (2048-bit key)
Received: from ([]) by localhost ( []) (amavisd-new, port 10024) with ESMTP id X7AhDjdnnkIm for <>; Tue, 20 Dec 2016 14:53:51 -0800 (PST)
Received: from ( [IPv6:2607:f8b0:400d:c09::22b]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by (Postfix) with ESMTPS id E4F6D129432 for <>; Tue, 20 Dec 2016 14:53:50 -0800 (PST)
Received: by with SMTP id q68so64618349qki.1 for <>; Tue, 20 Dec 2016 14:53:50 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;; s=20150623; h=mime-version:references:in-reply-to:from:date:message-id:subject:to; bh=pImdXNd1Wvnyk+XO0j8AbO1IgALsYYQn2Tp1qf9XzIw=; b=U//sWCCvjh6T/r9N2SGcaI/biamG0Q8miNB185vHgRwTjSly9fmmY5ueWLWu0823I1 gWmH3uRfadX+6ILRk+NQSafkZaQb3lE9rdnmEguxjalgowr+RwwigIL5p4Tl5tlz7R5e w/80niXxHpFGFxl+EW2SUbklNfTd64oPbEvcMpCu5T4fgNs8dJzdIgc6CHX1f/z8EOxi KJksTlSJdVr+eNocL9bfzXv4s5jjiqZLvU65aZp6VZvts8mJq2gKakMkLd/zdVGixyei N4iWWkuPN3KVsjXH+1lr9HUDlGZ/Glh5zZD9XXoRyoLONunYN5bZeJgywuTbejDxU317 2b6w==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to; bh=pImdXNd1Wvnyk+XO0j8AbO1IgALsYYQn2Tp1qf9XzIw=; b=Vwy9Xb/pZ7s/qty4vKLAl8F9H6zKaxZeNbSMk6SSFzHw6B9kZLt35PRDZOXlFMCRUF ujQk/qcIDk5XOA7oMM6laL0xCLfHdUyg+z1TC2QYeDx8h4iB0CHx+7SIZLH6w8rRWlMX XBjGyhe60TiEMLdGsZR5QPmOVvjUOb/vw0cQqpBGa8L3UbsrLRmukZF3VpetlfAIHOES XXlYl6HhkmSEBreClzHwy9a5hqt9lQCo0FqMkWffyWtenZS11FiE/1KECaH33SvMBu6A k53cnGV6/7iaf6KZE3Pe6vJmRf99QBJ0cHb1UvBaZkUU1hBImXLsOaJktJ57EzRLJMhI c7oQ==
X-Gm-Message-State: AIkVDXIwsNuIOAlihU6Duf5f7kRlNAt2EEgALnpsi/gFB2XFswaEKeX9YkY9WYa03WehjcOqg6d9L8qa3bs+BNKY
X-Received: by with SMTP id r190mr2130228qkd.72.1482274430003; Tue, 20 Dec 2016 14:53:50 -0800 (PST)
MIME-Version: 1.0
References: <>
In-Reply-To: <>
From: Warren Kumari <>
Date: Tue, 20 Dec 2016 22:53:39 +0000
Message-ID: <>
To: tjw ietf <>, dnsop <>
Content-Type: multipart/alternative; boundary="94eb2c084b70dc45dc05441ee8da"
Archived-At: <>
Subject: Re: [DNSOP] DNSOP Call for Adoption draft-vixie-dns-rpz
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: IETF DNSOP WG mailing list <>
List-Unsubscribe: <>, <>
List-Archive: <>
List-Post: <>
List-Help: <>
List-Subscribe: <>, <>
X-List-Received-Date: Tue, 20 Dec 2016 22:53:52 -0000

On Tue, Dec 20, 2016 at 10:17 AM tjw ietf <> wrote:

> Why not just wade into this discussion...
> The draft is being present as "Informational", and the point here is to
> document current working behavior in the DNS (for the past several years).
>   It is obvious that some feel this draft is a large mistake, but like
> edns-client-subnet, more operators are deploying this than one is aware of.
> This starts a Call for Adoption for draft-vixie-dns-rpz
> The draft is available here:
> Please review this draft to see if you think it is suitable for adoption
> by DNSOP, and comments to the list, clearly stating your view.

I believe that RPZ (and the DNS lies which it creates) is evil --
unfortunately we live in a world where this is a necessary evil.
I wish we lived in a world where RPZ was not necessary, but, well, we
don't, and so:

I support adoption of this draft. I believe that it solves an important use
case and that it needs to be publicly documented (it is already widely used
/ deployed and supported).
I suspect that the changes to the document should primarily be to increase
clarity / readability / fix nits, and that we should avoid the temptation
to make substantive changes.

I'm willing to contribute text, review, fold, spindle and mutilate,
whatever will be useful to get this out the door.


> Please also indicate if you are willing to contribute text, review, etc.
> With the holiday period upon us, we'll make this a three week call for
> adoption. This call for adoption ends on 10 January 2017
> Thanks,
> tim wicinski
> DNSOP co-chair
> _______________________________________________
> DNSOP mailing list