Re: [DNSOP] I-D Action: draft-ietf-dnsop-negative-trust-anchors-02.txt

Warren Kumari <warren@kumari.net> Wed, 04 March 2015 23:30 UTC

Return-Path: <warren@kumari.net>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 480101A0006 for <dnsop@ietfa.amsl.com>; Wed, 4 Mar 2015 15:30:34 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.978
X-Spam-Level:
X-Spam-Status: No, score=-1.978 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, FM_FORGED_GMAIL=0.622, RCVD_IN_DNSWL_LOW=-0.7] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Zm4tZddWWPRa for <dnsop@ietfa.amsl.com>; Wed, 4 Mar 2015 15:30:32 -0800 (PST)
Received: from mail-wi0-f169.google.com (mail-wi0-f169.google.com [209.85.212.169]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 817161A004B for <dnsop@ietf.org>; Wed, 4 Mar 2015 15:30:32 -0800 (PST)
Received: by wibhm9 with SMTP id hm9so11452711wib.2 for <dnsop@ietf.org>; Wed, 04 Mar 2015 15:30:31 -0800 (PST)
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:in-reply-to:references:date :message-id:subject:from:to:content-type; bh=8sQ6mob5CzP2xLF3j1L1SnOp4Fhm1bax9N8d/Q7F5pg=; b=DntfZriCnnRnu8d09niLuhP+Qom0v1IlrkdadfNPTwCdaqTRVnDY7SBK5JBMZZ9TNP Sb+mtjoaZkmU5b/jxH79l3Xf4FizRC9FK4/lxi/qlzPiivaBueZlagR5jvDViM6UVLaA GWkUblQ/+pFZRKQHAzBSGuRNH4vOil6cCxkUr4elSCOPzrAP09O6LhQ8VrEiEYO5h0Ln kVp1LtAL80RzcMM2buOdbuJ5uOr/r0Eci2AYtgxg4ldvGEmLhbI9nBm7ZzV6rXFYIjCm VB6RdO1hKAi9n8MFp4OJtI303W1vMUxhaTWc5F3FsYYavIwB0hkMmXBrnFtKyEin8yS1 BBmA==
X-Gm-Message-State: ALoCoQmmOVGG0/jeriacrUernUyR/ZYsrzPCe2FSYys5OlH7P12+UqoImEpOCnfGUmQjWyNE+Sjs
MIME-Version: 1.0
X-Received: by 10.194.63.16 with SMTP id c16mr12610076wjs.117.1425511831251; Wed, 04 Mar 2015 15:30:31 -0800 (PST)
Received: by 10.194.155.2 with HTTP; Wed, 4 Mar 2015 15:30:31 -0800 (PST)
In-Reply-To: <20150304232456.27888.15753.idtracker@ietfa.amsl.com>
References: <20150304232456.27888.15753.idtracker@ietfa.amsl.com>
Date: Wed, 04 Mar 2015 18:30:31 -0500
Message-ID: <CAHw9_iJcYMRi+DKAEX_BdBFwasHdE2etu-7ZrBqvVEkqLQV58w@mail.gmail.com>
From: Warren Kumari <warren@kumari.net>
To: dnsop <dnsop@ietf.org>
Content-Type: text/plain; charset="UTF-8"
Archived-At: <http://mailarchive.ietf.org/arch/msg/dnsop/b_ur0JNuUu35XTRNvw-XuQRVBtQ>
Subject: Re: [DNSOP] I-D Action: draft-ietf-dnsop-negative-trust-anchors-02.txt
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 04 Mar 2015 23:30:34 -0000

[ The only changes between -01 and -02 are that I ran a spell-check.
Normally that wouldn't deserve spinning a new rev, but, well, if
you've ever seen the quality of my unspellchecked typing, you'd
understnad...]



On Wed, Mar 4, 2015 at 6:24 PM,  <internet-drafts@ietf.org> wrote:
>
> A New Internet-Draft is available from the on-line Internet-Drafts directories.
>  This draft is a work item of the Domain Name System Operations Working Group of the IETF.
>
>         Title           : Definition and Use of DNSSEC Negative Trust Anchors
>         Authors         : Paul Ebersman
>                           Chris Griffiths
>                           Warren Kumari
>                           Jason Livingood
>                           Ralf Weber
>         Filename        : draft-ietf-dnsop-negative-trust-anchors-02.txt
>         Pages           : 16
>         Date            : 2015-03-04
>
> Abstract:
>    DNS Security Extensions (DNSSEC) is now entering widespread
>    deployment.  However, domain signing tools and processes are not yet
>    as mature and reliable as those for non-DNSSEC-related domain
>    administration tools and processes.  Negative Trust Anchors
>    (described in this document) can be used to mitigate DNSSEC
>    validation failures.
>
>    [RFC Editor: Please remove this before publication.  This document is
>    being stored in github at https://github.com/wkumari/draft-livingood-
>    dnsop-negative-trust-anchors . Authors accept pull requests, and keep
>    the latest (edit buffer) versions there, so commenters can follow
>    along at home.]
>
>
> The IETF datatracker status page for this draft is:
> https://datatracker.ietf.org/doc/draft-ietf-dnsop-negative-trust-anchors/
>
> There's also a htmlized version available at:
> http://tools.ietf.org/html/draft-ietf-dnsop-negative-trust-anchors-02
>
> A diff from the previous version is available at:
> http://www.ietf.org/rfcdiff?url2=draft-ietf-dnsop-negative-trust-anchors-02
>
>
> Please note that it may take a couple of minutes from the time of submission
> until the htmlized version and diff are available at tools.ietf.org.
>
> Internet-Drafts are also available by anonymous FTP at:
> ftp://ftp.ietf.org/internet-drafts/
>
> _______________________________________________
> DNSOP mailing list
> DNSOP@ietf.org
> https://www.ietf.org/mailman/listinfo/dnsop



-- 
I don't think the execution is relevant when it was obviously a bad
idea in the first place.
This is like putting rabid weasels in your pants, and later expressing
regret at having chosen those particular rabid weasels and that pair
of pants.
   ---maf