Re: [DNSOP] DNS Error Reporting

Peter van Dijk <peter.van.dijk@powerdns.com> Fri, 19 March 2021 11:43 UTC

Return-Path: <peter.van.dijk@powerdns.com>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A917D3A1015 for <dnsop@ietfa.amsl.com>; Fri, 19 Mar 2021 04:43:43 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.896
X-Spam-Level:
X-Spam-Status: No, score=-1.896 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, KHOP_HELO_FCRDNS=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id LJ8fAfpyJU-G for <dnsop@ietfa.amsl.com>; Fri, 19 Mar 2021 04:43:42 -0700 (PDT)
Received: from mx3.open-xchange.com (alcatraz.open-xchange.com [87.191.39.187]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 398FE3A1012 for <dnsop@ietf.org>; Fri, 19 Mar 2021 04:43:42 -0700 (PDT)
Received: from imap.open-xchange.com (imap.open-xchange.com [84.81.54.175]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx3.open-xchange.com (Postfix) with ESMTPSA id BD8506A261; Fri, 19 Mar 2021 12:43:40 +0100 (CET)
Received: from plato ([84.81.54.175]) by imap.open-xchange.com with ESMTPSA id eG1xLWyOVGDXDAAA3c6Kzw (envelope-from <peter.van.dijk@powerdns.com>); Fri, 19 Mar 2021 12:43:40 +0100
Message-ID: <f02f452c837b3c1cbc2441f197598fb6039a3e0e.camel@powerdns.com>
From: Peter van Dijk <peter.van.dijk@powerdns.com>
To: dnsop <dnsop@ietf.org>
Date: Fri, 19 Mar 2021 12:43:40 +0100
In-Reply-To: <CAH1iCirbmkAR+0rw_VK7dYmJspWGGZZ-+Cp0TXC8bQhcv-AtxA@mail.gmail.com>
References: <130FD763-B510-4034-9057-5BEC4C5B2E83@dnss.ec> <CAH1iCiqv6J6868ecPHQDCjm9yXehmaQjcJ30CdvhNWsjp4mxvw@mail.gmail.com> <c044d8a8-c621-39c8-c908-873dff3740c9@isc.org> <CAH1iCirbmkAR+0rw_VK7dYmJspWGGZZ-+Cp0TXC8bQhcv-AtxA@mail.gmail.com>
Organization: PowerDNS.COM B.V.
Content-Type: text/plain; charset="UTF-8"
User-Agent: Evolution 3.30.5-1.1
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/LQi4YHuQcZdJlwd6F4pAIkm9vNI>
Subject: Re: [DNSOP] DNS Error Reporting
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 19 Mar 2021 11:43:44 -0000

On Wed, 2021-03-17 at 16:49 -0700, Brian Dickson wrote:
> 
> > > Finally, what about an optional field for resolver operator contact info 
> > > (e.g. vCard or similar), so the authority operator can follow up with a 
> > > human if appropriate?
> > 
> > Interesting idea, but it leads to packet bloat caused by data which are 
> > unnecesary vast majority of the time.
> > 
> > Are we (as dnsop WG) not concerned with packet bloat anymore?
> 
> This would add data on the DNS query used for sending the report. DNS queries are generally very limited in size, typically less than 100 octets long.
> Adding something like "TYPE|LENGTH|mailto:dns-admin@example.com" on small query packets for reports is not likely to cause problems for anyone, anywhere. 
> 
> So, maybe no real concern if the length is limited to some sensible value?

The reporting query comes from an IP, presumably owned by the 'failing'
resolver, or some upstream of it. That IP is in a WHOIS database. Am I
too optimistic when I suggest that the WHOIS database can provide the
contact info?

Kind regards,
-- 
Peter van Dijk
PowerDNS.COM BV - https://www.powerdns.com/