Re: [dnsop] WGLC on draft-ietf-dnsop-bad-dns-res-03.txt

Rob Austein <sra@isc.org> Sun, 21 November 2004 23:57 UTC

Received: from darkwing.uoregon.edu (root@darkwing.uoregon.edu [128.223.142.13]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id SAA06346 for <dnsop-archive@lists.ietf.org>; Sun, 21 Nov 2004 18:57:11 -0500 (EST)
Received: from darkwing.uoregon.edu (majordom@localhost [127.0.0.1]) by darkwing.uoregon.edu (8.12.11/8.12.11) with ESMTP id iALMQGsL012417; Sun, 21 Nov 2004 14:26:16 -0800 (PST)
Received: (from majordom@localhost) by darkwing.uoregon.edu (8.12.11/8.12.11/Submit) id iALMQGec012416; Sun, 21 Nov 2004 14:26:16 -0800 (PST)
Received: from cyteen.hactrn.net (cyteen.hactrn.net [66.92.66.68]) by darkwing.uoregon.edu (8.12.11/8.12.11) with ESMTP id iALMQEeW012349 for <dnsop@lists.uoregon.edu>; Sun, 21 Nov 2004 14:26:15 -0800 (PST)
Received: from thrintun.hactrn.net (thrintun.hactrn.net [IPv6:2002:425c:4242:0:250:daff:fe82:1c39]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client CN "thrintun.hactrn.net", Issuer "Grunchweather Associates" (verified OK)) by cyteen.hactrn.net (Postfix) with ESMTP id 3158D25A for <dnsop@lists.uoregon.edu>; Sun, 21 Nov 2004 17:26:09 -0500 (EST)
Received: from thrintun.hactrn.net (localhost [IPv6:::1]) by thrintun.hactrn.net (Postfix) with ESMTP id 7D37C41FF for <dnsop@lists.uoregon.edu>; Sun, 21 Nov 2004 17:26:08 -0500 (EST)
Date: Sun, 21 Nov 2004 17:26:08 -0500
From: Rob Austein <sra@isc.org>
To: dnsop@lists.uoregon.edu
Subject: Re: [dnsop] WGLC on draft-ietf-dnsop-bad-dns-res-03.txt
In-Reply-To: <Pine.LNX.4.61.0411212145290.23597@netcore.fi>
References: <20041119215805.37460418A@thrintun.hactrn.net> <6.1.2.0.2.20041120155549.03b38d10@localhost> <20041121165643.GA29786@farside.isc.org> <Pine.LNX.4.61.0411212145290.23597@netcore.fi>
MIME-Version: 1.0 (generated by SEMI 1.14.5 - "Awara-Onsen")
Content-Type: text/plain; charset="US-ASCII"
Message-Id: <20041121222608.7D37C41FF@thrintun.hactrn.net>
Sender: owner-dnsop@lists.uoregon.edu
Precedence: bulk
Reply-To: Rob Austein <sra@isc.org>

It would help if folks who think they see protocol changes coming out
of this document would clearly identify the protocol changes they
think they're seeing.  Eg, the NS RRset ordering issue identified in
the message that Pekka cited is not (in my opinion) a protocol change,
since the DNS specs are already reasonably clear that RRsets are and
always have been unordered.

Many of the recommendations in this draft are what I'd classify as
implementation advice, which is something of a grey area, but since
this implementation advice follows directly from analysis of bad stuff
that's been happening to deployed servers out in the real world, I
think it's reasonable to keep the implementation advice in the same
document as the analysis that motiviates it unless there's a strong
reason to move the advice somewhere else.

If the IESG has a problem with this, they'll tell us, and Dave and I
can certainly ask our AD for an opinion, but let's not borrow trouble.
.
dnsop resources:_____________________________________________________
web user interface: http://darkwing.uoregon.edu/~llynch/dnsop.html
mhonarc archive: http://darkwing.uoregon.edu/~llynch/dnsop/index.html