Re: [DNSOP] Barry Leiba's Yes on draft-ietf-dnsop-qname-minimisation-08: (with COMMENT)

Jared Mauch <jared@puck.nether.net> Mon, 28 December 2015 19:36 UTC

Return-Path: <jared@puck.nether.net>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id F06311AC3DE for <dnsop@ietfa.amsl.com>; Mon, 28 Dec 2015 11:36:14 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.212
X-Spam-Level:
X-Spam-Status: No, score=-4.212 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id O7BuYG4fOv8S for <dnsop@ietfa.amsl.com>; Mon, 28 Dec 2015 11:36:13 -0800 (PST)
Received: from puck.nether.net (puck.nether.net [204.42.254.5]) by ietfa.amsl.com (Postfix) with ESMTP id DF9481AC3D9 for <dnsop@ietf.org>; Mon, 28 Dec 2015 11:36:13 -0800 (PST)
Received: from [IPv6:2601:401:3:6a00:79cc:1c8e:75f3:f91c] (unknown [IPv6:2601:401:3:6a00:79cc:1c8e:75f3:f91c]) (using TLSv1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by puck.nether.net (Postfix) with ESMTPSA id 0484554072F; Mon, 28 Dec 2015 14:36:11 -0500 (EST)
Mime-Version: 1.0 (Mac OS X Mail 9.2 \(3112\))
Content-Type: text/plain; charset="us-ascii"
From: Jared Mauch <jared@puck.nether.net>
In-Reply-To: <5004966.q9dYLaveqz@linux-85bq.suse>
Date: Mon, 28 Dec 2015 14:36:11 -0500
Content-Transfer-Encoding: quoted-printable
Message-Id: <FA8E5271-AB87-4823-90A0-55630E124139@puck.nether.net>
References: <20151228044020.48378.qmail@ary.lan> <A82E8E5B-4295-439D-9293-0C7C8941D863@ogud.com> <5004966.q9dYLaveqz@linux-85bq.suse>
To: Paul Vixie <vixie@tisf.net>
X-Mailer: Apple Mail (2.3112)
Archived-At: <http://mailarchive.ietf.org/arch/msg/dnsop/TlQ_wSf0F5HnyuTeiGJ5ZbUjhiQ>
Cc: dnsop@ietf.org
Subject: Re: [DNSOP] Barry Leiba's Yes on draft-ietf-dnsop-qname-minimisation-08: (with COMMENT)
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 28 Dec 2015 19:36:15 -0000

> On Dec 28, 2015, at 2:30 PM, Paul Vixie <vixie@tisf.net> wrote:
> 
> i agree with this analysis.
>  
> arguably, the moment we all agreed that DNSSEC's only purpose was to cause more resolution failures more often for more and new reasons, we ought to have said it can't be deployed and shouldn't be designed at all. i'm glad we did the foolish thing and kept going, though.
> 

This reiterates to me the need for me to complete the backend tooling for diagnosing DNS resolver issues.  Having something that detects if a server is doing minimization will be helpful to understand client behaviors.

- Jared