Re: [DNSOP] draft-ietf-dnsop-extended-error code options

George Michaelson <ggm@algebras.org> Tue, 14 November 2017 01:37 UTC

Return-Path: <ggm@algebras.org>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E4C10126E7A for <dnsop@ietfa.amsl.com>; Mon, 13 Nov 2017 17:37:51 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.601
X-Spam-Level:
X-Spam-Status: No, score=-2.601 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=algebras-org.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id BTGvSPo4wnko for <dnsop@ietfa.amsl.com>; Mon, 13 Nov 2017 17:37:50 -0800 (PST)
Received: from mail-vk0-x231.google.com (mail-vk0-x231.google.com [IPv6:2607:f8b0:400c:c05::231]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D6D081270FC for <dnsop@ietf.org>; Mon, 13 Nov 2017 17:37:49 -0800 (PST)
Received: by mail-vk0-x231.google.com with SMTP id b7so11264697vkh.12 for <dnsop@ietf.org>; Mon, 13 Nov 2017 17:37:49 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=algebras-org.20150623.gappssmtp.com; s=20150623; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc; bh=1DJXxr6sZHVTU7fhR0pvt0FE7jHAim0qp+0cdq4i6p0=; b=VutyXZMXaOfbS2M/UpSkj/FkQ5uss5fVNUmEc6Qav0zfeiDBeP96810Dr1ltjXtmse K49A/nxmsIIkl8dp6mWs94Y4qpOusttO1ekd3c32YHodElAbnMiHVlVbSkQ5WcgBNh+t 5Xe/nCGwTWnaXDWAsIT2pz290XT4iBh1j5/XT9V7f0fuWg9dy1cU4/j3Lb085pSjAUaJ DcnYnf1UEgfLFlau8gxCrxsJQnE4bmgf/XrLHPPAmqCaflNhcXxLv9ztJBNtbNO4zqSA H7Yr9KeQYV2lLAe6a1z+WSoy+XyNdCBT+vffWauNlshgcKcsDMZS5zyCt8bxB9YtfviC tKXA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc; bh=1DJXxr6sZHVTU7fhR0pvt0FE7jHAim0qp+0cdq4i6p0=; b=D2saFyqZrCdBeMpxyEQKh4iAeavMKKJX1KbsgshAahbgPHJy08YzPxau8fU8rkZznj lwsZqIzg6lvuYbZ8tU3+ATrd+fOnurgeXxTgLbcS5hciNezubtu9g5pjGbfUYgdnW/Hj gc2T5Sp/Rt4Mh/7459hyq59RFP8OC2p7wpZ/hwk0woxj4uejEGCd1M8Sa/5rCqdTe4Yl CyG/dwzEULnq1M8AD15l+Nusts9Mh3T3OrtUDFall9Ukh2H4+j+hmcE/9az3tccafAPW az+GzAvSkC3tOAMJV77vrjzsguGwCouwlLCCo43RqVlTTtVoihbrASa0Ryk9m0Sp1+YP CWzg==
X-Gm-Message-State: AJaThX5dmbVJAuTr9vxgS5DW4Qggs1IvkYN39WpCjb8orOvW+CrEjEYg gKuRMPqSaf6pErx1hY+jiXzKue+CjGurm6JgQGfJF8a4
X-Google-Smtp-Source: AGs4zMbA/hNGf0NkZjFMt99BuR08jIgOqwp2z79cuwvjWRo9PYxnz6Ivy0kCngmPkZkKW1dKHgW3hfZKrjI8o0xqPe0=
X-Received: by 10.31.135.17 with SMTP id j17mr8048490vkd.34.1510623468953; Mon, 13 Nov 2017 17:37:48 -0800 (PST)
MIME-Version: 1.0
Received: by 10.103.91.2 with HTTP; Mon, 13 Nov 2017 17:37:48 -0800 (PST)
X-Originating-IP: [101.100.166.3]
In-Reply-To: <20171114013049.GA19865@laperouse.bortzmeyer.org>
References: <yblpo9md8fk.fsf@wu.hardakers.net> <CADyWQ+G-e+zqGkFK7vPQdXBDRvyv-Gxw75N1z+A6L8ULR=+izQ@mail.gmail.com> <26DB1BD1-A877-482A-83B3-7A7F673AAB4A@apnic.net> <e9a3bbc4-0c03-b66c-eb2b-a1c1b336424b@bellis.me.uk> <20171114013049.GA19865@laperouse.bortzmeyer.org>
From: George Michaelson <ggm@algebras.org>
Date: Tue, 14 Nov 2017 09:37:48 +0800
Message-ID: <CAKr6gn03XiZvCx4LsWLGQy8F4ap3w48OR8jY8Fb=RS3Z3LB6YA@mail.gmail.com>
To: Stephane Bortzmeyer <bortzmeyer@nic.fr>
Cc: dnsop WG <dnsop@ietf.org>
Content-Type: text/plain; charset="UTF-8"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/MNr-96QNSr0olknBkiUPBZa4jo8>
Subject: Re: [DNSOP] draft-ietf-dnsop-extended-error code options
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 14 Nov 2017 01:37:52 -0000

Stephane, I don't entirely understand your response. old systems can
never understand new code point assignments, or know what to do with
it, no proposed change can alter this. Middleboxes dropping unexpected
things will hit almost any proposed modification of packets in flight.

Basically, I don't think any proposed modification of DNS in this
space can be done, which doesn't face this risk: therefore, I don't
see it having directing force.

If there is some trick to doing something which doesn't expose the
risk, What is it?

cheers

-George

On Tue, Nov 14, 2017 at 9:30 AM, Stephane Bortzmeyer <bortzmeyer@nic.fr> wrote:
> On Mon, Nov 13, 2017 at 08:54:16PM +0800,
>  Ray Bellis <ray@bellis.me.uk> wrote
>  a message of 29 lines which said:
>
>> Would it be feasible to reserve a standard RCODE value in the header
>> that just means "see extended error"?
>
> First reaction: no. Middleboxes would block these responses, or old
> clients would not know what to do with it.
>
> _______________________________________________
> DNSOP mailing list
> DNSOP@ietf.org
> https://www.ietf.org/mailman/listinfo/dnsop