Re: [DNSOP] Call for Adoption: draft-pwouters-powerbind

Bob Harold <> Fri, 01 May 2020 18:02 UTC

Return-Path: <>
Received: from localhost (localhost []) by (Postfix) with ESMTP id C54E43A18F5 for <>; Fri, 1 May 2020 11:02:51 -0700 (PDT)
X-Virus-Scanned: amavisd-new at
X-Spam-Flag: NO
X-Spam-Score: -2.098
X-Spam-Status: No, score=-2.098 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: (amavisd-new); dkim=pass (2048-bit key)
Received: from ([]) by localhost ( []) (amavisd-new, port 10024) with ESMTP id udQiYm6Q8PmM for <>; Fri, 1 May 2020 11:02:46 -0700 (PDT)
Received: from ( [IPv6:2a00:1450:4864:20::135]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by (Postfix) with ESMTPS id 35DC73A18F0 for <>; Fri, 1 May 2020 11:02:45 -0700 (PDT)
Received: by with SMTP id z22so4297226lfd.0 for <>; Fri, 01 May 2020 11:02:45 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;; s=google-2016-06-03; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=czjrowPNJp4pFwOC21Jy7kOoBA3/Xiy457OIc04gAHA=; b=FrxWjMCkDmg9RMsFCkp/IJzqRKQDTCLVPpn+WNQg6InofiUBW3tat7Oy/0EaAN5bS0 chcUMo/AlAV/OXdtgnbqRYWJXY7pKBwM5A3oldv+gTYqi0do6jNeDWPr3Wt3mvQRUcEA S6PDG2M2tGTjFu99YUMwzRa1JqKTvkMPD85N1chwFIGY0uLg91IN6x80joHXRAJ7Kfx+ ps/0J3T9gOFI4kZfgseHcYnD+Dz9LmtaILCOkLIcSwrn7QCZ7eP2X2MDeQPceK4oWNcj WnQYu4iq71GtHi2hEyJgfKLK/5HV1b3DACyf0QRFWnA8J6iXHW0LcQNB1WLvVCI4eePY A1wg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=czjrowPNJp4pFwOC21Jy7kOoBA3/Xiy457OIc04gAHA=; b=g6GFIUtZNXNw7ii/Rlasye+kESIAGUQ5myH31B4Coidh95ih3fcLS0DxrU380wDj6J GHXL7wEN7e32k5EUpha4ZJYSvBA1fMUvvsgeYq0SQVkD7byMDejgV+Et3m515jnRMK3l dEQQ16c5e0WEeGt3GWI/9ZbtowdkY9Mklxk+/+LeJKfx1nh2Rw/yPQNr99oewE2joEyD L3XDoQt0dyYPSxCoq/kIaAXnifdQnf+CKwh4d78wzFtFuIcWxPddOyLmU5wvlZkXnRJB qkQXCDOjaHVZsqP5gNwvU6aokgFiAwJhHGr9LD8DRTZALfU2iZrfl9uhjd+5kcVyXcdN 6gFg==
X-Gm-Message-State: AGi0PubHrspndQiUp9tKqPod1iy6m3Y3F3/eQNnRwcJt5wXNgY9SzOCt 1zDZmanqqAYTMfXDENb1vawIDVPVVmTd2PoGlX4tEmA7
X-Google-Smtp-Source: APiQypIRwr1lqQZ8xYnw6tBeGKsGkUKiOzeU7VUTc7RZw+4sh1XAj5nAwyTKtSqpj8MFrqE1LKJSKLkksx/FpjUTcUY=
X-Received: by 2002:a19:4b90:: with SMTP id y138mr3148435lfa.39.1588356163812; Fri, 01 May 2020 11:02:43 -0700 (PDT)
MIME-Version: 1.0
References: <> <20200501014428.427E818950D7@ary.qy>
In-Reply-To: <20200501014428.427E818950D7@ary.qy>
From: Bob Harold <>
Date: Fri, 01 May 2020 14:02:32 -0400
Message-ID: <>
To: John Levine <>
Cc: IETF DNSOP WG <>, Wes Hardaker <>
Content-Type: multipart/alternative; boundary="000000000000ebdaa705a499fcbc"
Archived-At: <>
Subject: Re: [DNSOP] Call for Adoption: draft-pwouters-powerbind
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IETF DNSOP WG mailing list <>
List-Unsubscribe: <>, <>
List-Archive: <>
List-Post: <>
List-Help: <>
List-Subscribe: <>, <>
X-List-Received-Date: Fri, 01 May 2020 18:02:52 -0000

On Thu, Apr 30, 2020 at 9:44 PM John Levine <> wrote:

> In article <> you write:
> >Yep, I suspect some of the bigger TLDs probably couldn't opt in to this
> >draft simply because they're full of, um, "history".  Until that history
> >is cleaned, they probably couldn't deploy it.
> It's not just history.  All of the nominet TLDs and many Verisign TLDs
> have signed A records that are clearly deliberate.  There's also a fair
> number of TXT records named zz--zz.<domain> that have some sort of info
> about when the zone was updated.
> I think it's benign to allow any sort of record as an immediate child
> of the domain, since you need to go two levels down for split zones.
> That handes the nominet and zz--zz cases.
> R's,
> John
Is there any chance that a user trying to reach could
get the orphan glue A record for instead of the A record in the
real zone?
(Just trying to think of cases where orphan glue might make a difference.)

Bob Harold