Re: [DNSOP] comments on dnsop-qname-minimisation-02

Bob Harold <rharolde@umich.edu> Wed, 11 March 2015 14:43 UTC

Return-Path: <rharolde@umich.edu>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 776151ACDC1 for <dnsop@ietfa.amsl.com>; Wed, 11 Mar 2015 07:43:57 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.977
X-Spam-Level:
X-Spam-Status: No, score=-1.977 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, FM_FORGED_GMAIL=0.622, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id T9CqW8D4okTt for <dnsop@ietfa.amsl.com>; Wed, 11 Mar 2015 07:43:56 -0700 (PDT)
Received: from mail-la0-f41.google.com (mail-la0-f41.google.com [209.85.215.41]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id F41321ACCE1 for <dnsop@ietf.org>; Wed, 11 Mar 2015 07:43:55 -0700 (PDT)
Received: by labhs14 with SMTP id hs14so8781794lab.5 for <dnsop@ietf.org>; Wed, 11 Mar 2015 07:43:54 -0700 (PDT)
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:in-reply-to:references:date :message-id:subject:from:to:cc:content-type; bh=WFQjGu/sLxAAjSH9mqaac2ZUfMdwR2BlaotdsFQbxN8=; b=PE81fPyAERiD9Gip1AwT4XTodB3BRbNdEfdsYf9YpA4pmq+Pi6PXDJbjLglhrxjg7F VWU2HZYYiwHQiUIGg/s9wE02dXwbeg7dRqjRDwD/Kc0A4UJ17UWrLAFFqBPUV40Ducsg IGUlmZrjkZoA7V+y94QmoxDXi4KJMGSqW5SSBxdYol3rPrU4H/AA33qGQeYTBsMnf7mW VqHfxc9NxdvtWcubu3F25V0bu9tEJo/QMOswdrnZTnu5CzhYQA50CsjBVRxP8+iOL0br +3zIh31gVjibadlU6LcRSz92pboxho1pyzCE7IR/WtCUguE3Fyj44lv9/xamGSYAVFB9 71NA==
X-Gm-Message-State: ALoCoQk7YUsFPA9TwevVyGb6kgUm3kqfj3BRGoihfzDSXBzXE9nh0pWnB+VbCqbFFJVO31tpdHIh
MIME-Version: 1.0
X-Received: by 10.152.225.167 with SMTP id rl7mr35591466lac.54.1426085034235; Wed, 11 Mar 2015 07:43:54 -0700 (PDT)
Received: by 10.112.8.98 with HTTP; Wed, 11 Mar 2015 07:43:54 -0700 (PDT)
In-Reply-To: <CAHPuVdW6KUongqRBKE8zwK4By=ocJRpS=2MYpq1tYcPjYq6amw@mail.gmail.com>
References: <CAHPuVdW6KUongqRBKE8zwK4By=ocJRpS=2MYpq1tYcPjYq6amw@mail.gmail.com>
Date: Wed, 11 Mar 2015 10:43:54 -0400
Message-ID: <CA+nkc8Cqd2EpFEyKtBi0RrnEvz2L-ymWMRWp2288MVNRY4Vw2g@mail.gmail.com>
From: Bob Harold <rharolde@umich.edu>
To: shuque@gmail.com
Content-Type: multipart/alternative; boundary="001a11348e68e2a5460511044b3f"
Archived-At: <http://mailarchive.ietf.org/arch/msg/dnsop/PHjrxGe4BFOmgu6JN6R0BBWSRT8>
Cc: "dnsop@ietf.org WG" <dnsop@ietf.org>
Subject: Re: [DNSOP] comments on dnsop-qname-minimisation-02
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 11 Mar 2015 14:43:57 -0000

On Wed, Mar 11, 2015 at 12:35 AM, Shumon Huque <shuque@gmail.com> wrote:

> ...
>
> One thing this document doesn't make clear is that the algorithm
> being presented not only minimizes the query name, but also hides
> the query type until it reaches the target zone (by using the NS
> query type rather than the actual type). A pure query name minimization
> algorithm can just strip off labels and issue normal queries with
> the requested query type. I've implemented the latter algorithm
> and it works fine (with well behaved authoritative servers). I agree
> with the goal of additionally providing privacy for the query type,
> but the document should explicitly state that, very early on. The
> term 'qname minimization' also doesn't include in it the idea of
> qtype hiding, but I don't have a suggestion for a better term.
> ...
>
> Could I suggest "query minimization" as a term to include both qname and
qtype minimization?
The term might be a little too vague, but what do others think?