Re: [DNSOP] Fwd: New Version Notification for draft-pan-dnsop-edns-isp-location-02.txt

Robert Edmonds <> Fri, 28 July 2017 17:17 UTC

Return-Path: <>
Received: from localhost (localhost []) by (Postfix) with ESMTP id A6C0D131F6F for <>; Fri, 28 Jul 2017 10:17:25 -0700 (PDT)
X-Virus-Scanned: amavisd-new at
X-Spam-Flag: NO
X-Spam-Score: -1.903
X-Spam-Status: No, score=-1.903 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RP_MATCHES_RCVD=-0.001, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from ([]) by localhost ( []) (amavisd-new, port 10024) with ESMTP id l2BRiJ08tUG8 for <>; Fri, 28 Jul 2017 10:17:24 -0700 (PDT)
Received: from ( []) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by (Postfix) with ESMTPS id 52DC7131D15 for <>; Fri, 28 Jul 2017 10:17:24 -0700 (PDT)
Received: by (Postfix, from userid 1000) id AE51312C190B; Fri, 28 Jul 2017 13:17:23 -0400 (EDT)
Date: Fri, 28 Jul 2017 13:17:23 -0400
From: Robert Edmonds <>
To: Dave Lawrence <>
Cc: Lanlan Pan <>, dnsop <>
Message-ID: <>
References: <> <> <>
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
In-Reply-To: <>
Archived-At: <>
Subject: Re: [DNSOP] Fwd: New Version Notification for draft-pan-dnsop-edns-isp-location-02.txt
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: IETF DNSOP WG mailing list <>
List-Unsubscribe: <>, <>
List-Archive: <>
List-Post: <>
List-Help: <>
List-Subscribe: <>, <>
X-List-Received-Date: Fri, 28 Jul 2017 17:17:26 -0000


Dave Lawrence wrote:
> Have you had any feedback from authority server implementers who are
> interested in using this? 

As an authority server implementer at a CDN -- we have no interest in
using anything like this.

> I'm having a hard time picturing many CDNs wanting to switch, in no
> small part because geo is not the only goal of mapping.  The
> < COUNTRY, AREA, ISP > tuple that is defined is insufficient.

Yes, as has been made clear in previous discussion on this document.

Even if it were sufficient, using only a <COUNTRY, AREA, ISP> tuple to
direct traffic makes it incumbent on the resolver operator to accurately
geolocate the client IP and faithfully transmit the result to the
authoritative operator. If the resolver operator is an ISP, this
proposal would give the ISP an enormous amount of counter- traffic
engineering power by spoofing the COUNTRY/AREA fields.

Robert Edmonds