Re: [DNSOP] Call for Adoption: draft-huston-kskroll-sentinel

David Conrad <drc@virtualized.org> Tue, 28 November 2017 17:59 UTC

Return-Path: <drc@virtualized.org>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 44F93128896 for <dnsop@ietfa.amsl.com>; Tue, 28 Nov 2017 09:59:09 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.898
X-Spam-Level:
X-Spam-Status: No, score=-1.898 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=virtualized-org.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id xvig8niUktR9 for <dnsop@ietfa.amsl.com>; Tue, 28 Nov 2017 09:59:07 -0800 (PST)
Received: from mail-pl0-x236.google.com (mail-pl0-x236.google.com [IPv6:2607:f8b0:400e:c01::236]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 9322D12420B for <dnsop@ietf.org>; Tue, 28 Nov 2017 09:59:07 -0800 (PST)
Received: by mail-pl0-x236.google.com with SMTP id g2so370241pli.8 for <dnsop@ietf.org>; Tue, 28 Nov 2017 09:59:07 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=virtualized-org.20150623.gappssmtp.com; s=20150623; h=date:from:to:cc:message-id:in-reply-to:references:subject :mime-version; bh=2yGlsHUU5A7fwp+Tx0zui6ibPcsVF0huThMeeJGpUbg=; b=QKPyKNrSVSheoAbmsSGBf4KYa4KgDIb+AKn5AeJBVKxAM/EU2zHuJiH5Wz23ThPmsY IyGJmaKleLPl6yiB9A2sBWiYtDZYXG5AcBxjWjpN8FgM5tAw0aCzk4qD/0NO3lkym/aj 3zE4mGtx9YEyF55LrJdRYIuRewrkE6QJFVSZ2RFtKu9UsmIMjOYVEc5buY7L/vcyBlkV XaPPNR9k3QXyYYVYnbcuH5ELRDSydKWTNq7PKTmnu7LunIFPY6DFxyMCh/2twZ1uoSdn I21Q8erDko2DUlPCtpGde4OcPfSXkZDB2E41UzmVZ74G88m/PujTixz4KlhZYpUwjwcF swQA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:date:from:to:cc:message-id:in-reply-to :references:subject:mime-version; bh=2yGlsHUU5A7fwp+Tx0zui6ibPcsVF0huThMeeJGpUbg=; b=JAxfWlFBoxr9sbWsnwxsLpme9ncBnctaAuLvShF1KKQPRyR5xjOqXp9A1q4qbmhycC M/Yq1qMKRQDu3IDuyUnjEiZ1cXCPEqEaCN8oFX+UhOKiP3QbCwgW3WIjlz005Ld846KI Rk3d45pqNGOKHPnGdHYHywUq46iSqi7p8HrNpTLBhUF4tG5mTBIpTj5fO719ycYaOpkW KMkAt1XJTN8Og6ureenrY2BhFKq2EopRPlGjR9WMDii47coRcTRCAhvEnXQZcCrKBOds c0B5vLjqqGtHS6P168PgHN7DuvJZVZboVVYKO1F4DfbYgKiZ8ga5qRw+6RDL81G5rd/u m96w==
X-Gm-Message-State: AJaThX4YTh8SEeqvD3w33Htk2O5oi95NleOxLYtKycDTHkbN9NcBtq7b gxnV5Rpk+sOvC41qTlrkO0nyQA==
X-Google-Smtp-Source: AGs4zMY9VWENn0i14OfwmYyWNhF/6zoK6a0eN4XI+z9myqBHJz+M7E145uf89b45cIyCNxCfeokQ0A==
X-Received: by 10.159.198.1 with SMTP id f1mr5095621plo.450.1511891947215; Tue, 28 Nov 2017 09:59:07 -0800 (PST)
Received: from [2620:0:2d0:110:400::] ([2620:0:2d0:110:911f:c272:33b1:59d9]) by smtp.gmail.com with ESMTPSA id h69sm55399239pfk.166.2017.11.28.09.59.06 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Tue, 28 Nov 2017 09:59:06 -0800 (PST)
Date: Tue, 28 Nov 2017 09:48:24 -0800
From: David Conrad <drc@virtualized.org>
To: Joe Abley <jabley@hopcount.ca>, Richard Barnes <rlb@ipv.sx>
Cc: tjw ietf <tjw.ietf@gmail.com>, dnsop <dnsop@ietf.org>, George Michaelson <ggm@algebras.org>
Message-ID: <8883eb76-672e-45f3-953c-64a1b3a22b2e@Spark>
In-Reply-To: <CAL02cgRyzri3YKGxj6EYn=O_nfvQ_Hd-b5JR3mPFvp3sPQTgHQ@mail.gmail.com>
References: <CADyWQ+Fhzybt-aNNF+yJxQfWDM56W+rzWxZ2YB3yf6wy4m_uxA@mail.gmail.com> <CAKr6gn07V7s0Q8czQR3v6uAujj4t1-SRt7xqi=zDNVpsryXhVQ@mail.gmail.com> <CAL02cgTZq2+F5Ki6B-042oBdng=tn3jZagb_EKUNFpS7XYgXbQ@mail.gmail.com> <CAL02cgTawPPjWRZ=iMHQOyT+N_cU1r74N+Cp2+Fxn_qLoMh7cQ@mail.gmail.com> <11C784A2-B8E1-4D63-81F9-B62AA148D9EE@hopcount.ca> <CAL02cgRyzri3YKGxj6EYn=O_nfvQ_Hd-b5JR3mPFvp3sPQTgHQ@mail.gmail.com>
X-Readdle-Message-ID: 8883eb76-672e-45f3-953c-64a1b3a22b2e@Spark
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="5a1da3e9_19495cff_8b5"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/Mp3pJ29xxMFG-2vuDkdKTjf_RNc>
Subject: Re: [DNSOP] Call for Adoption: draft-huston-kskroll-sentinel
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 28 Nov 2017 17:59:09 -0000

On Nov 27, 2017, 11:47 AM -0800, Richard Barnes <rlb@ipv.sx>, wrote:

> I don't think that it make sense to infer from the failure of RFC 8145 that resolver/authoritative telemetry isn't possible

Huh? RFC 8145 wasn’t a failure — it was stunningly successful. Within a few months of publication it provided us insights we hadn’t before had into how the infrastructure was actually working.  This was unexpected.

> To the degree that the DNS still works at all, there must be some channel by which information can be faithfully passed from authoritative to resolver, which can presumably be used to bootstrap telemetry.  Maybe it's a TXT record with an HTTP URL; maybe it's a funny CNAME.

Maybe it is, and when we see another viable channel, we’ll undoubtedly make use of it. Until then, adding something like sentinel would seem to be a useful way of gathering information about the state of reality.

> Maybe you can't build a road through the jungle, but there are still rivers that make it through, which can carry a message in a bottle.

I don’t want to let the perfect be the enemy of the … well, perhaps not good, but functional.

Regards,
-drc