Re: [DNSOP] WGLC for draft-ietf-dnsop-let-localhost-be-localhost-02

Mark Andrews <marka@isc.org> Thu, 25 January 2018 13:19 UTC

Return-Path: <marka@isc.org>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 25A53129C6C for <dnsop@ietfa.amsl.com>; Thu, 25 Jan 2018 05:19:18 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.91
X-Spam-Level:
X-Spam-Status: No, score=-6.91 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Fzt4qyvDBYOw for <dnsop@ietfa.amsl.com>; Thu, 25 Jan 2018 05:19:14 -0800 (PST)
Received: from mx.pao1.isc.org (mx.pao1.isc.org [149.20.64.53]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1547A124B17 for <dnsop@ietf.org>; Thu, 25 Jan 2018 05:19:13 -0800 (PST)
Received: from zmx1.isc.org (zmx1.isc.org [149.20.0.20]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mx.pao1.isc.org (Postfix) with ESMTPS id B89F13AB001; Thu, 25 Jan 2018 13:19:05 +0000 (UTC)
Received: from zmx1.isc.org (localhost [127.0.0.1]) by zmx1.isc.org (Postfix) with ESMTPS id 73D69160075; Thu, 25 Jan 2018 13:19:05 +0000 (UTC)
Received: from localhost (localhost [127.0.0.1]) by zmx1.isc.org (Postfix) with ESMTP id 59BC6160077; Thu, 25 Jan 2018 13:19:05 +0000 (UTC)
Received: from zmx1.isc.org ([127.0.0.1]) by localhost (zmx1.isc.org [127.0.0.1]) (amavisd-new, port 10026) with ESMTP id b9dnONVZdGaC; Thu, 25 Jan 2018 13:19:05 +0000 (UTC)
Received: from [172.30.42.90] (c27-253-115-14.carlnfd2.nsw.optusnet.com.au [27.253.115.14]) by zmx1.isc.org (Postfix) with ESMTPSA id 7D83D160075; Thu, 25 Jan 2018 13:19:04 +0000 (UTC)
Content-Type: text/plain; charset="utf-8"
Mime-Version: 1.0 (Mac OS X Mail 10.3 \(3273\))
From: Mark Andrews <marka@isc.org>
In-Reply-To: <4b9d884e-627b-8019-2b05-b64cc20ffd84@nic.cz>
Date: Fri, 26 Jan 2018 00:19:00 +1100
Cc: dnsop@ietf.org
Content-Transfer-Encoding: quoted-printable
Message-Id: <75AC4EA7-1E38-463F-B3A7-B996F7584306@isc.org>
References: <9DCE2F63-EE37-4865-B9D6-6B79BBE05593@gmail.com> <062ab681-2226-4f86-0ed8-132c3d1d86ea@nic.cz> <4b9d884e-627b-8019-2b05-b64cc20ffd84@nic.cz>
To: Petr Špaček <petr.spacek@nic.cz>
X-Mailer: Apple Mail (2.3273)
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/IdG4z2K3q_XVyMFe5nCP8T98Sx4>
Subject: Re: [DNSOP] WGLC for draft-ietf-dnsop-let-localhost-be-localhost-02
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 25 Jan 2018 13:19:18 -0000

> On 25 Jan 2018, at 9:48 pm, Petr Špaček <petr.spacek@nic.cz> wrote:
> 
> Oh, wait, I just realized one question:
> 
> What about reverse zones for "localhost" addresses specified in
> https://tools.ietf.org/html/rfc6303#section-4.2
> https://tools.ietf.org/html/rfc6303#section-4.3
> 
> It seems to me that it should be handled in similar way, i.e. answered
> with NXDOMAIN.
> 
> RFC 6303 says that we should have empty domain for it, but this part is
> confusing:
>   The recommendation to serve an empty zone 127.IN-ADDR.ARPA is not an
>   attempt to discourage any practice to provide a PTR RR for
>   1.0.0.127.IN-ADDR.ARPA locally.
> 
> PTR is DNS-specific term, so I'm not sure if it is clumsy expression for
> "stub should hardcode the answer" or something else.
> 
> Petr Špaček  @  CZ.NIC

No. It says if there isn’t a zone configured then return NXDOMAIN rather than
recurse to the in-addr.arpa servers. That is different to always /just return
NXDOMAIN.

All the zones listed in RFC 6303 can be overridden locally. The point of RFC 6303
is to stop traffic going to the public server if the zones are not otherwise
configured locally.

> On 24.1.2018 17:19, Petr Špaček wrote:
>> On 22.1.2018 17:18, Suzanne Woolf wrote:
>>> Hi all,
>>> 
>>> This is the opening of the Working Group Last Call for "Let 'localhost' be localhost” (https://www.ietf.org/id/draft-ietf-dnsop-let-localhost-be-localhost-02.txt).
>>> 
>>> We’ll end it in two weeks, on February 5, 2018.
>>> 
>>> Please focus feedback on: Is this draft ready to go to the IESG for approval as an RFC?
>> 
>> Yes, I've reviewed version 02 and it seems ready to me.
> 
> _______________________________________________
> DNSOP mailing list
> DNSOP@ietf.org
> https://www.ietf.org/mailman/listinfo/dnsop

-- 
Mark Andrews, ISC
1 Seymour St., Dundas Valley, NSW 2117, Australia
PHONE: +61 2 9871 4742              INTERNET: marka@isc.org