Re: [DNSOP] comments on dnsop-qname-minimisation-02

Shumon Huque <shuque@gmail.com> Wed, 11 March 2015 15:39 UTC

Return-Path: <shuque@gmail.com>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DFD401A9009 for <dnsop@ietfa.amsl.com>; Wed, 11 Mar 2015 08:39:35 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level:
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id EJogvkE9OHAW for <dnsop@ietfa.amsl.com>; Wed, 11 Mar 2015 08:39:34 -0700 (PDT)
Received: from mail-qc0-x22f.google.com (mail-qc0-x22f.google.com [IPv6:2607:f8b0:400d:c01::22f]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 555A91A8ACE for <dnsop@ietf.org>; Wed, 11 Mar 2015 08:39:31 -0700 (PDT)
Received: by qcwb13 with SMTP id b13so11140126qcw.9 for <dnsop@ietf.org>; Wed, 11 Mar 2015 08:39:30 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:reply-to:in-reply-to:references:date:message-id :subject:from:to:cc:content-type; bh=UKzifOutn7bN7ur9eV+zHG4o9D4EkIm9YEtq0aiIRL0=; b=h4UFRwOtn1PSiieUnpO8t1GUPdBzIv5Q+28QQfBfCRJgH1yTfrQanPaP7Tje6/SGdE 6jdpdGNgTzhvlJO9OiUEejyCIgCoIobJj6eA89+OSh2t+rCbziIVISCJlgazMlfLET+y U+sfp7PVgEOr79UwujDaFxdPLdy2Xe377i6KfjvoQz92KSh2EEDXyY+Mkk0BZVsCR8ch 6TWCDhnqXJ1ejF889iA0mnhNR/+dqKclDC0FSdJ6jN/NtdpCpsxmmt6uA+gobvF/vVTa VntFvMQ99KVto+fAdmpqCCk3E1wWGs2rJK5HmKI7GXbmbsAyy80G36JOLFEVDQu8dl8f 1/TA==
MIME-Version: 1.0
X-Received: by 10.140.152.10 with SMTP id 10mr19244817qhy.40.1426088370652; Wed, 11 Mar 2015 08:39:30 -0700 (PDT)
Received: by 10.140.94.105 with HTTP; Wed, 11 Mar 2015 08:39:30 -0700 (PDT)
In-Reply-To: <CA+nkc8Cqd2EpFEyKtBi0RrnEvz2L-ymWMRWp2288MVNRY4Vw2g@mail.gmail.com>
References: <CAHPuVdW6KUongqRBKE8zwK4By=ocJRpS=2MYpq1tYcPjYq6amw@mail.gmail.com> <CA+nkc8Cqd2EpFEyKtBi0RrnEvz2L-ymWMRWp2288MVNRY4Vw2g@mail.gmail.com>
Date: Wed, 11 Mar 2015 11:39:30 -0400
Message-ID: <CAHPuVdU+RE+9FXk0tGnidrzgRePk9WazVi2wod_wgsLujz43Pw@mail.gmail.com>
From: Shumon Huque <shuque@gmail.com>
To: Bob Harold <rharolde@umich.edu>
Content-Type: multipart/alternative; boundary="001a1135aed0c04d2205110512e7"
Archived-At: <http://mailarchive.ietf.org/arch/msg/dnsop/_rXZfOo8auGGFH2raqdlhQ4eb38>
Cc: "dnsop@ietf.org WG" <dnsop@ietf.org>
Subject: Re: [DNSOP] comments on dnsop-qname-minimisation-02
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
Reply-To: shuque@gmail.com
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 11 Mar 2015 15:39:36 -0000

On Wed, Mar 11, 2015 at 10:43 AM, Bob Harold <rharolde@umich.edu> wrote:

>
> On Wed, Mar 11, 2015 at 12:35 AM, Shumon Huque <shuque@gmail.com> wrote:
>
>> ...
>>
>> One thing this document doesn't make clear is that the algorithm
>> being presented not only minimizes the query name, but also hides
>> the query type until it reaches the target zone (by using the NS
>> query type rather than the actual type). A pure query name minimization
>> algorithm can just strip off labels and issue normal queries with
>> the requested query type. I've implemented the latter algorithm
>> and it works fine (with well behaved authoritative servers). I agree
>> with the goal of additionally providing privacy for the query type,
>> but the document should explicitly state that, very early on. The
>> term 'qname minimization' also doesn't include in it the idea of
>> qtype hiding, but I don't have a suggestion for a better term.
>> ...
>>
>> Could I suggest "query minimization" as a term to include both qname and
> qtype minimization?
> The term might be a little too vague, but what do others think?
>
>
I had also thought of 'query minimization', but I think that it risks being
misinterpreted as minimization of the number of queries, so it might not be
better.

Shumon Huque