Re: [DNSOP] Fwd: New Version Notification for draft-belyavskiy-rfc5933-bis-01.txt

Dmitry Belyavsky <beldmit@gmail.com> Sun, 16 February 2020 14:21 UTC

Return-Path: <beldmit@gmail.com>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 724FE120142 for <dnsop@ietfa.amsl.com>; Sun, 16 Feb 2020 06:21:36 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.997
X-Spam-Level:
X-Spam-Status: No, score=-1.997 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id G5iBPcgOnM_U for <dnsop@ietfa.amsl.com>; Sun, 16 Feb 2020 06:21:33 -0800 (PST)
Received: from mail-vs1-xe2d.google.com (mail-vs1-xe2d.google.com [IPv6:2607:f8b0:4864:20::e2d]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 61A411201DC for <dnsop@ietf.org>; Sun, 16 Feb 2020 06:21:33 -0800 (PST)
Received: by mail-vs1-xe2d.google.com with SMTP id a2so9087649vso.3 for <dnsop@ietf.org>; Sun, 16 Feb 2020 06:21:33 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=kLyvSvGBFgoOpnX1Xfb794e80pG8bPMa/0guveLq72w=; b=dnEBYwZTKf9E7Yu8jiLIevMSvRzk/x82AUrOA+w9rKsPSiHe/WA3w3OT86Q3MlyZkT e6QKL/ZgktA7Mx0W/+b84qXQmt46weQdsKOSN2zgNYUVSCJKqucqauIlX0KXx50U5cd8 Ip+UgJwIHZ2fjuVVldYPv1yzDAyrEfISs64YGI1lQX9Zn0qA2Gpn+Uo4NElWkdgbmceo fq4jotB/KRCzbNDAGf7zsNO1E1cSfcJzbKxM5XfiikmJMCRvHwZURLczSKmeCg9jTwxJ bjM5o89XcNRbgKTNVtzMJ5HM0tWIj28Yooy2q/w5SUVy11dhGcOGienTUS4gxXm1AvsG LlXg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=kLyvSvGBFgoOpnX1Xfb794e80pG8bPMa/0guveLq72w=; b=jSnpZYrjtxysiW4s3NM/KAd2Wm7k8neTmKFKpg9fxdLmMtzuKnMMlPKPcaYA1fZ2gv Vf5tn3mhJRsxiT1pHYEXiC+FBZ5eS1eDNG6x/QU3wpDQHhU0EYDVqqs6pBDr+DRUuBsa 1Lfuyc0/i8Bt4DUbzYuQQYQ1c2tbRRa6dwo8+kyMArGHi4cnt3sh7Jy9GSz7aqEl6jH2 1eTBniRKh3bS/uBZOUNswbRqcqhXjOj+8oiSSntGkWZb4ZO9O3P5MrWjxbLGyeoXG3Lf z4bsAwhatGuf29OaQ7Cz/4+/ScZuwwp0m1dafq7+iHyTlyNu7iYT+6ba7Q5r3KLzRnAx VmQA==
X-Gm-Message-State: APjAAAXg3w1Qf4vT6d8uYmEGNaykdoG/GtfSeizaP0ht/Or/TdKrpghD YYKpVpDcRpA1bJWdEpaz6R0dR5+gL3TaOSpTjUsvWfYI
X-Google-Smtp-Source: APXvYqwdkeNGOW/dyUXLoU45f2B+O65QrJ6F5/eVNhiDmKrRJ2UM3pSofeKXcJGkonlPpIlFsKf/5hTuVrK7oE/deko=
X-Received: by 2002:a67:ce82:: with SMTP id c2mr5261970vse.30.1581862892296; Sun, 16 Feb 2020 06:21:32 -0800 (PST)
MIME-Version: 1.0
References: <158124502203.5374.10591432200443691289.idtracker@ietfa.amsl.com> <CADqLbzKrakETnNeJo+-Bw0U5eB6OSObAiBev2QPBoj_OoRoTEA@mail.gmail.com> <CAHw9_iL+VKxSG59eDvjGnkqUV4GZLazOQ6j2=LcKZ23QGq_TRw@mail.gmail.com>
In-Reply-To: <CAHw9_iL+VKxSG59eDvjGnkqUV4GZLazOQ6j2=LcKZ23QGq_TRw@mail.gmail.com>
From: Dmitry Belyavsky <beldmit@gmail.com>
Date: Sun, 16 Feb 2020 17:21:21 +0300
Message-ID: <CADqLbzKPoAte5ODYZb7JpSWK2N6YW567ONWyP0nTFArV=BWduQ@mail.gmail.com>
To: Warren Kumari <warren@kumari.net>
Cc: dnsop <dnsop@ietf.org>
Content-Type: multipart/alternative; boundary="000000000000c75ff3059eb22749"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/PXwGLA63V1skBvFqbasRUhfInjM>
Subject: Re: [DNSOP] Fwd: New Version Notification for draft-belyavskiy-rfc5933-bis-01.txt
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 16 Feb 2020 14:21:42 -0000

Just a clarification.

In contrast to RFC 5933, this document does NOT pretend to make the
described algorithms IANA-recommended.

On Wed, Feb 12, 2020 at 12:14 AM Warren Kumari <warren@kumari.net> wrote:

> Dear DNSOP,
>
> I asked Dmitry to please bring this document to DNSOP for discussion;
> DNSOP is where we generally discuss the use of different algorithms in
> DNSSEC.
> I'd appreciate it if the discussion can be kept to the DNS / DNSSEC
> parts of the document (using the algorithms for DNSKEY, RRSIG, and DS
> resource records), and not the crypto itself (CFRG / others are the
> place for that).
>
> W
>
> On Tue, Feb 11, 2020 at 12:06 PM Dmitry Belyavsky <beldmit@gmail.com>
> wrote:
> >
> > Dear DNSOP mailing list members,
> >
> > Please see the announcement of the draft describing using the
> > GOST 2012 hash and digital signature algorithms for DNSSec.
> >
> > The document pretends to update 2 IANA registries.
> >
> > The 1st one implies the "RFC required" status:
> >
> https://www.iana.org/assignments/dns-sec-alg-numbers/dns-sec-alg-numbers.xhtml#dns-sec-alg-numbers-1
> > so there are no problems with it.
> >
> > The 2nd one, unfortunately for me, requires "Standard action" status
> >
> https://www.iana.org/assignments/ds-rr-types/ds-rr-types.xhtml#ds-rr-types-1
> >
> > so it makes impossible to pass it via ISE.
> >
> > I kindly ask to review the draft to make possible assigning the IANA
> codes for the algorithms.
> > The implementation of the draft is also available, see
> https://github.com/beldmit/ldns/tree/gost2012 for details.
> >
> > Many thanks!
> >
> > ---------- Forwarded message ---------
> > From: <internet-drafts@ietf.org>
> > Date: Sun, Feb 9, 2020 at 1:43 PM
> > Subject: New Version Notification for draft-belyavskiy-rfc5933-bis-01.txt
> > To: Vasily Dolmatov <vdolmatov@gmail.com>, Dmitry Belyavskiy <
> beldmit@gmail.com>
> >
> >
> >
> > A new version of I-D, draft-belyavskiy-rfc5933-bis-01.txt
> > has been successfully submitted by Dmitry Belyavskiy and posted to the
> > IETF repository.
> >
> > Name:           draft-belyavskiy-rfc5933-bis
> > Revision:       01
> > Title:          Use of GOST 2012 Signature Algorithms in DNSKEY and
> RRSIG Resource Records for DNSSEC
> > Document date:  2020-02-09
> > Group:          Individual Submission
> > Pages:          9
> > URL:
> https://www.ietf.org/internet-drafts/draft-belyavskiy-rfc5933-bis-01.txt
> > Status:
> https://datatracker.ietf.org/doc/draft-belyavskiy-rfc5933-bis/
> > Htmlized:
> https://tools.ietf.org/html/draft-belyavskiy-rfc5933-bis-01
> > Htmlized:
> https://datatracker.ietf.org/doc/html/draft-belyavskiy-rfc5933-bis
> > Diff:
> https://www.ietf.org/rfcdiff?url2=draft-belyavskiy-rfc5933-bis-01
> >
> > Abstract:
> >    This document describes how to produce digital signatures and hash
> >    functions using the GOST R 34.10-2012 and GOST R 34.11-2012
> >    algorithms for DNSKEY, RRSIG, and DS resource records, for use in the
> >    Domain Name System Security Extensions (DNSSEC).
> >
> >
> >
> >
> > Please note that it may take a couple of minutes from the time of
> submission
> > until the htmlized version and diff are available at tools.ietf.org.
> >
> > The IETF Secretariat
> >
> >
> >
> > --
> > SY, Dmitry Belyavsky
> > _______________________________________________
> > DNSOP mailing list
> > DNSOP@ietf.org
> > https://www.ietf.org/mailman/listinfo/dnsop
>
>
>
> --
> I don't think the execution is relevant when it was obviously a bad
> idea in the first place.
> This is like putting rabid weasels in your pants, and later expressing
> regret at having chosen those particular rabid weasels and that pair
> of pants.
>    ---maf
>


-- 
SY, Dmitry Belyavsky