Re: [DNSOP] Minimum viable ANAME

Olli Vanhoja <olli@zeit.co> Tue, 26 March 2019 17:01 UTC

Return-Path: <olli@zeit.co>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B239A12068B for <dnsop@ietfa.amsl.com>; Tue, 26 Mar 2019 10:01:46 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.235
X-Spam-Level:
X-Spam-Status: No, score=-1.235 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_MED=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_SOFTFAIL=0.665, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=zeit-co.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id WI_OWMUZ6-wY for <dnsop@ietfa.amsl.com>; Tue, 26 Mar 2019 10:01:45 -0700 (PDT)
Received: from mail-lf1-x12f.google.com (mail-lf1-x12f.google.com [IPv6:2a00:1450:4864:20::12f]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 71B39120690 for <dnsop@ietf.org>; Tue, 26 Mar 2019 10:01:43 -0700 (PDT)
Received: by mail-lf1-x12f.google.com with SMTP id 10so9236171lfr.8 for <dnsop@ietf.org>; Tue, 26 Mar 2019 10:01:43 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=zeit-co.20150623.gappssmtp.com; s=20150623; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc:content-transfer-encoding; bh=VHTBPtNT2ODVYcizOjj7ffwigVrqeez1wtVHLLHtn9o=; b=tgGMZ6m1BgXTSy9JRFGJNoxENxFlKIb+AzygHb8+DJLUkuYx25FOwUUrJ8GUD7ytdT 8LILwEsNFHx2ocyPhnAz19qCGlV8XvHzO3oPkHAEdsw1s+qW0/Vp5iSug6rSM6yW1DAL pKRvcZPy9Nv4rGnlP4wHxZ+AHaIg7xERugdBduQ3684EIclh5GNTnEA3YaR75GXjPNvX EeMqmoxRxvTCRWaQmEVrOqFmKYPj599v1o4WIsjxyUZuT4uZPyT3l0iC+XESc1N8F+Zk mvbxGe1IvJFpAM6bUMbBMrRHfDmwuc0Q4sd78jYfCUy9GfOgufSqQfQm8Y+hw3DqBu2D 6Vtw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc:content-transfer-encoding; bh=VHTBPtNT2ODVYcizOjj7ffwigVrqeez1wtVHLLHtn9o=; b=J8pZv1lKJC20hSyWeTGn8qZJVnicu3YoKmzPeG6wCB3GGN44aVp/qu0MUKeuazTV8L EaPBjx5JPoNm0hA7knhd11g6pSJ3wY07rfw4Z2HyvFa2jjM6feEEaJY/BnKfeLX+EpFz A5FfDARoOHuP5Fn9sHbRn1iB1OzniQE16/GLi3DBz5sIrgy8t6M1K2iM00VhN+MCMhpO 0wQ/g4b4tnG54EA7JSHMA/UEy/Yf+1T01Q3iVLn5oU4USzx9g9iUAYaQRWFoN5tNmfDt J1SxSALaYs6BIEVgLwCOZNhi/viXv0BFqvWyg30ik0KKaRjdxKkZsNtV3gP0A+iz8nmA uZqw==
X-Gm-Message-State: APjAAAXCVJ+BSSkbwtFKUG6GJyWdpwLQpk/N9cbAnfK/Fx6w2N9FfEr3 e18ZjzjCUtZg62Vp40NPFd4n5VXqQxMkDc5TW5VrBI6D26U=
X-Google-Smtp-Source: APXvYqwCl7gB0IJDM9Dr430kCnpuUim+QSnSEukHWiazpXRPMhezN+Q6CyllD4ABqflIp6H2NUCNLZltm0VBu23tKwo=
X-Received: by 2002:a19:d144:: with SMTP id i65mr14537417lfg.52.1553619701743; Tue, 26 Mar 2019 10:01:41 -0700 (PDT)
MIME-Version: 1.0
References: <20180919201401.8E0C220051382A@ary.qy> <08C8A740-D09B-4577-AF2A-79225EDB526B@dotat.at> <20180920061343.GA754@jurassic> <E944887D-51ED-41A0-AC5A-3076743620D8@isoc.org> <acef1f69-8e4f-52cc-dca5-3ada9446e0ee@bellis.me.uk> <CABrJZ5HmCoSsGe2L-JkAsPywhcxyyVkvMmXCvQyJMjWHnMeT_w@mail.gmail.com> <alpine.DEB.2.20.1903261521290.13313@grey.csi.cam.ac.uk> <104ec4ea-296f-1657-5633-f6c1f2684274@pletterpet.nl> <alpine.DEB.2.20.1903261540330.13313@grey.csi.cam.ac.uk> <ec8e6848-c962-56b4-50d5-a7bd4b6d48e6@nic.cz>
In-Reply-To: <ec8e6848-c962-56b4-50d5-a7bd4b6d48e6@nic.cz>
From: Olli Vanhoja <olli@zeit.co>
Date: Tue, 26 Mar 2019 18:01:30 +0100
Message-ID: <CABrJZ5H=Ltora2m6_Gyk=O6+UqT-F704hvoKt5=U-TY7fx8JqA@mail.gmail.com>
To: Vladimír Čunát <vladimir.cunat@nic.cz>
Cc: dnsop <dnsop@ietf.org>, Tony Finch <dot@dotat.at>
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/MboatmCajskgxYuhfEOGgnCrFhc>
Subject: Re: [DNSOP] Minimum viable ANAME
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 26 Mar 2019 17:01:53 -0000

On Tue, Mar 26, 2019 at 5:36 PM Vladimír Čunát <vladimir.cunat@nic.cz> wrote:
>
> I'm not convinced that the resolver parts will be important, regardless of what exact mechanism will be chosen.  My reasoning is that you can't rely on any changes there being widely deployed soon, and there might not be enough incentive to implement and deploy.  On the authoritative side, on the other hand, it's enough to just get support on all servers *you* use, and the incentives seem much stronger, too.
>
> --Vladimir

I think it's totally wrong to *choose* here what we think is the best
method to solve the issue. Note that ANAME/ALIAS/whatever is already
widely deployed on the authoritative side i.e. DNS providers like AWS,
PointDNS, DNSMadeEasy, Constellix, Cloudflare (on enterprise plans),
and probably many others. Surely their implementations differ from
each other and what is exactly supported varies a lot, but regardless
of that these providers and their customers are already in consensus
about the key details. Me and many others will be using those
providers no matter whether there will be an RFC or not. Zone
transfers will be hard and feature parity will be lacking but at least
it somewhat works while we keep designing the perfecting Internet that
nobody else has time to wait for.