Re: [DNSOP] [Ext] I-D Action: draft-ietf-dnsop-svcb-https-05.txt

John R Levine <johnl@taugh.com> Thu, 13 May 2021 19:24 UTC

Return-Path: <johnl@taugh.com>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 157BD3A0C82 for <dnsop@ietfa.amsl.com>; Thu, 13 May 2021 12:24:06 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.1
X-Spam-Level:
X-Spam-Status: No, score=-2.1 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=iecc.com header.b=w+Jhy8un; dkim=pass (2048-bit key) header.d=taugh.com header.b=e2wv+yYl
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 6mgkt8uK7SIz for <dnsop@ietfa.amsl.com>; Thu, 13 May 2021 12:24:00 -0700 (PDT)
Received: from gal.iecc.com (gal.iecc.com [IPv6:2001:470:1f07:1126:0:43:6f73:7461]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 77EBC3A0C70 for <dnsop@ietf.org>; Thu, 13 May 2021 12:24:00 -0700 (PDT)
Received: (qmail 12793 invoked from network); 13 May 2021 19:23:58 -0000
DKIM-Signature: v=1; a=rsa-sha256; c=simple; d=iecc.com; h=date:message-id:from:to:cc:subject:in-reply-to:references:mime-version:content-type; s=31f6.609d7cce.k2105; bh=uF24f3BIRE597rtPrjs7yqNQS8TwvT7neqBK8+xfMi4=; b=w+Jhy8unDxxl8w6e11/Qx6Nzhxc3AFF/dkn4FqeDtDmK7ktGSdGzWcGhG1T9o+xMNWwrFwt3j4jTOxU5ZIFXoaOI+P7mPoH+Tbdto4aL+/n6KcVVfzHQPlPf+3HlNnRtHpVHnvaypHGFjQaaCbGQPGf58gHtbxn9Td+PRDQBVuk04ShZLv4B8tatlx5gSevch8frsOwYZUNDuhTQpcMpmrOLFaTg6h+O9q5pNi8U+52D3tfyITTV3ojQ/KjKwXU37f0N8iyBVOjzm2P/yK+S2EYT32bSFCpWJkTiPPGcslzqUCKtpJPOdr0I74p4WiYiKZUJIguZzzdPu9PvAUVXkg==
DKIM-Signature: v=1; a=rsa-sha256; c=simple; d=taugh.com; h=date:message-id:from:to:cc:subject:in-reply-to:references:mime-version:content-type; s=31f6.609d7cce.k2105; bh=uF24f3BIRE597rtPrjs7yqNQS8TwvT7neqBK8+xfMi4=; b=e2wv+yYlVU5xfXemu/AEXOKjf3wkxVoera9vzgAeWTn5lfgREaUJCnV/Fa7CAtMyziRVnk5Y29SeFZZoyzcAyooBWdBhtlFO5sojXj0XsppJCP9sLbkC9GZZncFxvNJceTVEjTX9/VH4gxbIDiJJ9gPfb2xV1h5a+RAGbZs+YWBRoY0882hn7rwroMJtK9ZVydJUl1jX7WNWfMwWri9qYu5HFMlegtsEkmXnEy5fCnf8ZYId/6S5H+RhZDANAZ3Y/NDBv7/bxAmoX522pVDyvBd5HvQzVZ2arAl8allxGTk9LPZRj6xxikPnc9iQkaHfUHWged2y5TXB7dcnJ34fug==
Received: from ary.qy ([IPv6:2001:470:1f07:1126::78:696d:6170]) by imap.iecc.com ([IPv6:2001:470:1f07:1126::78:696d:6170]) with ESMTPS (TLS1.2 ECDHE-RSA AES-256-GCM AEAD) via TCP6; 13 May 2021 19:23:57 -0000
Received: by ary.qy (Postfix, from userid 501) id 1EE777BCA2C; Thu, 13 May 2021 15:23:56 -0400 (EDT)
Received: from localhost (localhost [127.0.0.1]) by ary.qy (Postfix) with ESMTP id C054B7BCA0E; Thu, 13 May 2021 15:23:56 -0400 (EDT)
Date: 13 May 2021 15:23:56 -0400
Message-ID: <6ab46dc8-dc77-2ac7-e9e0-58d045fce298@taugh.com>
From: "John R Levine" <johnl@taugh.com>
To: "Ben Schwartz" <bemasc@google.com>
Cc: "Brian Dickson" <brian.peter.dickson@gmail.com>, "dnsop" <dnsop@ietf.org>
X-X-Sender: johnl@ary.qy
In-Reply-To: <CAHbrMsB+7p1BLEvA9z6Y7n92uHpPkNOOgyLV2_yS0_no1sUQAw@mail.gmail.com>
References: <7ADF1FB2-97A4-4C49-8F25-8BF03BE01640@hopcount.ca> <20210512213903.D5F1F7AA827@ary.qy> <CAMOjQcFJjcsvaREF0fr+2GTY4zTy5CxSxR16BEp=Nc-K9WJ0Tg@mail.gmail.com> <CAH1iCipAVKVCuH2ME=+YpeJyijrKCtzJaU3bRFyy1f48EB33iw@mail.gmail.com> <CAHbrMsCjWgV7nc575L_qdvr7HdoEVKqkXRwLdXA2L5NiCgdvwA@mail.gmail.com> <CAH1iCipW_-BSMQZ-S+m18pyzfxTGsCrmG9Pc-b35_VRiLhxh4w@mail.gmail.com> <CAHbrMsDvEkYAxee4xjW5LsQmr0PgBf+UmMAuME-_UvRMg4jJeA@mail.gmail.com> <34e915e0-1146-9037-caf0-fd68cc7eccc1@taugh.com> <CAHbrMsB+7p1BLEvA9z6Y7n92uHpPkNOOgyLV2_yS0_no1sUQAw@mail.gmail.com>
MIME-Version: 1.0
Content-Type: text/plain; format=flowed; charset=US-ASCII
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/UlzLg6MCMeHqvhf2o-ZraFxXH1A>
Subject: Re: [DNSOP] [Ext] I-D Action: draft-ietf-dnsop-svcb-https-05.txt
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 13 May 2021 19:24:06 -0000

> Pushing text processing onto the client does not reduce the complexity; it
> just moves it to people who are less likely to be reading DNSOP.  Notably,
> it moves that responsibility to a place where typical text processing
> errors are far more dangerous, and malicious inputs are far more likely.

I suppose, but it also moves it to people who are more likely to care.

I don't know if you've looked at the state of DNS provisioning software, 
but it is pretty bad.  While I'm sure that bind and nsd and powerdns can 
handle anything, I', also sure that approximately nobody outside of a few 
large sophisticated sites will use SVCB because their local DNS 
provisioning crudware doesn't support it.  If you can say it's easy, it's 
a couple of numbers and strings, they might.  If they have to parse and 
sort and dedup and look up code numbers, uh, sure, maybe later.  Much, 
much, later.

Regards,
John Levine, johnl@taugh.com, Taughannock Networks, Trumansburg NY
Please consider the environment before reading this e-mail. https://jl.ly