Re: [DNSOP] Call for Adoption: draft-arends-private-use-tld

Ted Lemon <mellon@fugue.com> Thu, 18 June 2020 15:15 UTC

Return-Path: <mellon@fugue.com>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 15C7D3A0879 for <dnsop@ietfa.amsl.com>; Thu, 18 Jun 2020 08:15:22 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.899
X-Spam-Level:
X-Spam-Status: No, score=-1.899 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=fugue-com.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id pepyXa3ZtFgx for <dnsop@ietfa.amsl.com>; Thu, 18 Jun 2020 08:15:20 -0700 (PDT)
Received: from mail-qk1-x744.google.com (mail-qk1-x744.google.com [IPv6:2607:f8b0:4864:20::744]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8CF143A0863 for <dnsop@ietf.org>; Thu, 18 Jun 2020 08:15:17 -0700 (PDT)
Received: by mail-qk1-x744.google.com with SMTP id f18so5889125qkh.1 for <dnsop@ietf.org>; Thu, 18 Jun 2020 08:15:17 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=fugue-com.20150623.gappssmtp.com; s=20150623; h=mime-version:subject:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to; bh=SiqUxUZskrS7hR17fI1u5q/B5eFY/oxsW4ZxfLjV3Xc=; b=ZHde1uSGrL1pVVnAKOy2/FvsbQ0LXaMgMbjj5oJoIGGOytR7uIiDGbV/jEDLzuM4jQ ew8tXvJb7Lp1uM+18QOvRp1btwM8J6pLusLSe524txs0AxgPCwACRhYcE3MhVDeoMBwH OqPZktzGcM2gRsTI4J3LE5cB02wKRK8NmPci7BW217DSSOty1X39cae6BwkeZIya1dpA UybQSCSiw2iaTn7NE5y1KuKq9xW4SOZPsxJ+ttCR43cPl6u0eRFsxMJgf99htd5qPMc0 QtPMFVp+TdJPoHVCUH+ot+/uyRImgs+vB/QBxlqAmYYB37zaVRAco0KhI1DoYPqXwTIx dK9w==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:subject:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to; bh=SiqUxUZskrS7hR17fI1u5q/B5eFY/oxsW4ZxfLjV3Xc=; b=K8iu+sCMZ9TbcNIILtZACqRf5RV8lnbAQlI4ts/CXryUAurRxKRsD1iWzge6iWIlZ/ D3xc2xsS43zAHGIuX3xpea/RvWFy5ou80a/gpPPBLWIn1UHHEC5aqsu7Yax2onZKsMrj 7Dbz+iKboGJ4C7sjK6yrn3q+pa67yaG4TDSSqY4FzjvZ/JaxA9zXj+zTSUAhlXJqxRwG HOQjxi7cDQroOxoiKhS6rihevxu9T3kAxWjFhQLnM8aE+/ass7jAbhxkvTSdbrCCKGL2 gxe7+uZBQpvVe1jCelTvJF9WH3D4glO3WpcVsd2jbitS1xOf70MxSFv6DqGUmmbXVGEZ HAlA==
X-Gm-Message-State: AOAM533zzqGGXihcb0gPENpM61vX5+dxGOBYJpS2bWeowFgDHiw498Bo i1os1t2ut+Pk/t7BdB27GtsLI1bwd44=
X-Google-Smtp-Source: ABdhPJxHdyYGoMzBgFWsn7q9aIJwLuEuBUmK+ZLFfffvbNUcRnp+3Zh1Z3TXHDSbKB2mLt5hZhS72Q==
X-Received: by 2002:a37:b50:: with SMTP id 77mr4312102qkl.152.1592493316302; Thu, 18 Jun 2020 08:15:16 -0700 (PDT)
Received: from ?IPv6:2601:18b:300:36ee:44c4:f851:9b58:4a72? ([2601:18b:300:36ee:44c4:f851:9b58:4a72]) by smtp.gmail.com with ESMTPSA id f14sm3072418qka.70.2020.06.18.08.15.14 (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Thu, 18 Jun 2020 08:15:15 -0700 (PDT)
Content-Type: text/plain; charset="utf-8"
Mime-Version: 1.0 (Mac OS X Mail 13.4 \(3608.120.23.2.1\))
From: Ted Lemon <mellon@fugue.com>
In-Reply-To: <C93E56C1-4CD9-4143-BA04-76CE059D2556@dnss.ec>
Date: Thu, 18 Jun 2020 11:15:13 -0400
Cc: Petr Špaček <petr.spacek@nic.cz>, dnsop@ietf.org
Content-Transfer-Encoding: quoted-printable
Message-Id: <B3109CA9-AF2E-4444-B89D-163ED1BC4D64@fugue.com>
References: <CADyWQ+F=JA6fogcy_JGRJaZv=Hq52ozgmY5gmzfPm=1oHcJXKg@mail.gmail.com> <427141d8-c164-35a7-0e02-0961865d4468@nic.cz> <af8c285c-6e08-7457-8ca8-b088e96dc251@nic.cz> <C93E56C1-4CD9-4143-BA04-76CE059D2556@dnss.ec>
To: Roy Arends <roy@dnss.ec>
X-Mailer: Apple Mail (2.3608.120.23.2.1)
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/SDBYhR-PD_3S9fUzvjJFYNTKzZ0>
Subject: Re: [DNSOP] Call for Adoption: draft-arends-private-use-tld
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 18 Jun 2020 15:15:22 -0000

For what it’s worth, I am in favor of adopting this document. With that said, however, I do have questions, Roy.

If we use these ccTLDs as squatting domains, that means that we’re going to see a lot of traffic at the root trying to find nonexistent name servers, right?  And these ccTLDs provably do not exist, right?

Contrariwise, home.arpa has an un-signed delegation.  Queries for home.arpa are no worse than queries for any other .arpa subdomain, as far as the root is concerned. On the other hand, perhaps they are worse for .arpa, and since in fact .arpa is currently served by the root servers, perhaps this makes no difference.

What’s the difference we’ll see in traffic for the root versus traffic for .arpa if people adopt known-unused, securely nonexistent ccTLDs instead of an un-signed delegation under .arpa?

Also, what do you think the operational effect of this will be? Given that these domains are currently provably nonexistent, this means that a resolver looking up names in these domains will have to special-case them. This is not true for home.arpa. Are we okay with the operational effects of this? Or is it a gap in the current version of your document that IANA is not instructed to delegate these domains in the same way that home.arpa is delegated (see section 7 of RFC8375)?

Similarly, is it an omission in the current document that these domains are not listed in the “transport-independent locally-served zones” IANA registry (https://www.iana.org/assignments/locally-served-dns-zones/locally-served-dns-zones.xhtml)?