Re: [DNSOP] New Version Notification for draft-wessels-dns-zone-digest-01.txt

"Wessels, Duane" <dwessels@verisign.com> Mon, 30 July 2018 22:38 UTC

Return-Path: <dwessels@verisign.com>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id F1C8A130E82 for <dnsop@ietfa.amsl.com>; Mon, 30 Jul 2018 15:38:58 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level:
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=verisign.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id F27P1En3p3f7 for <dnsop@ietfa.amsl.com>; Mon, 30 Jul 2018 15:38:57 -0700 (PDT)
Received: from mail5.verisign.com (mail5.verisign.com [69.58.187.31]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 26ACF130E53 for <dnsop@ietf.org>; Mon, 30 Jul 2018 15:38:57 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=verisign.com; l=7302; q=dns/txt; s=VRSN; t=1532990337; h=from:to:cc:date:message-id:references:in-reply-to: mime-version:subject; bh=ynCLd+5FtyhSexQG64hpWqFbQ5sfShgevSK5drwzg1E=; b=mb0ZbFCr/f7ZX0jjHl+o2fm1KF2X3OFgD6feUaSkGysX1h84WYPg1y8V Snx/Vo4qpLhvsbmzFYMYODYbR6C1r/rNDkKRUPOHjAKPIo+xxPlF4pCVR F9lwubewUjxQSxyGwoljYWzkdFM0Mki4UgzPMJomPCGMDY4NPVDvGB0EF 4aU4P2RrNLtVDdjSWzOaCwhxw0lTrNEBWKzezNdwY8rqXlsMksAZKalsh RIyaRegCAZ+i7DSaqrQvtFo3n3QJQCk3M4QtzCc/vmrlntOcbS8uZOt5D G3jlAr6uLUojczWXNlf6nCNf55VuGCLLpqrokL1Cn4faC4vFK1qaOV2b+ g==;
X-IronPort-AV: E=Sophos; i="5.51,424,1526356800"; d="p7s'?scan'208"; a="5220166"
IronPort-PHdr: 9a23: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
X-IPAS-Result: A2EVAwBAkl9b/zGZrQpcGQEBAQEBAQEBAQEBAQcBAQEBAYVYCoN0liolg2mTYggDhGwCgzU4FAECAQEBAQEBAgEBAoERgjUkAYJeAQEBAQIBI1QCBQsCAQgOCioCAgIwJQIEDgUOgxIBgXerSBGBIYEuhF6FWQ+JGYFCPoE5DBOCTId/MYIkApoQAwYCg2WBWYsxjE+SEAIEAgQFAhSBWIF0cBVlAYI+giQYEY4Gb44tgRsBAQ
Received: from BRN1WNEX01.vcorp.ad.vrsn.com (10.173.153.48) by BRN1WNEX02.vcorp.ad.vrsn.com (10.173.153.49) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256) id 15.1.1466.3; Mon, 30 Jul 2018 18:38:55 -0400
Received: from BRN1WNEX01.vcorp.ad.vrsn.com ([fe80::a89b:32d6:b967:337d]) by BRN1WNEX01.vcorp.ad.vrsn.com ([fe80::a89b:32d6:b967:337d%5]) with mapi id 15.01.1466.003; Mon, 30 Jul 2018 18:38:55 -0400
From: "Wessels, Duane" <dwessels@verisign.com>
To: Evan Hunt <each@isc.org>
CC: Ondřej Surý <ondrej@isc.org>, dnsop <dnsop@ietf.org>
Thread-Topic: [EXTERNAL] [DNSOP] New Version Notification for draft-wessels-dns-zone-digest-01.txt
Thread-Index: AQHUKFYZ/H2CVD96KEWVJLRNgGuYDw==
Date: Mon, 30 Jul 2018 22:38:55 +0000
Message-ID: <1D9E1D60-4897-44D7-AFBC-8705E8C4C84F@verisign.com>
References: <20180728215805.E60F020030A8E0@ary.qy> <FC43CF7A-9653-4EF3-BFF5-79600DC940AD@isc.org> <alpine.OSX.2.21.1807290047300.46393@ary.qy> <D2923107-B7D1-4ED6-AAC6-C65553BDEFEB@isc.org> <20180729210344.GA39601@isc.org>
In-Reply-To: <20180729210344.GA39601@isc.org>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: yes
X-MS-TNEF-Correlator:
x-originating-ip: [10.170.148.18]
Content-Type: multipart/signed; boundary="Apple-Mail=_BA7EC462-7327-4104-A335-0AB6AA61036D"; protocol="application/pkcs7-signature"; micalg="sha1"
MIME-Version: 1.0
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/K4WW_9EDlSpEt9_hxkTvt7kjarQ>
Subject: Re: [DNSOP] New Version Notification for draft-wessels-dns-zone-digest-01.txt
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.27
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 30 Jul 2018 22:38:59 -0000


> On Jul 29, 2018, at 2:03 PM, Evan Hunt <each@isc.org> wrote:
> 
> On Sun, Jul 29, 2018 at 10:55:31AM +0200, Ondřej Surý wrote:
>> You need to know the hash is valid before you start the download.
>> Therefore the hash has to be signed.
> 
> Before you *start* the download? Or before you use what you downloaded?

I may be wrong, but I think Ondrej may have been referencing the idea of using BitTorrent where you request the data by its hash value...

DW