Re: [DNSOP] [Ext] Re: [Doh] Alternate proposal for transport indication in draft-ietf-dnsop-dns-wireformat-http

Ted Lemon <mellon@fugue.com> Wed, 04 April 2018 17:19 UTC

Return-Path: <mellon@fugue.com>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 570A0126C22 for <dnsop@ietfa.amsl.com>; Wed, 4 Apr 2018 10:19:27 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=fugue-com.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id kdIQeFd4MiQZ for <dnsop@ietfa.amsl.com>; Wed, 4 Apr 2018 10:19:24 -0700 (PDT)
Received: from mail-qt0-x233.google.com (mail-qt0-x233.google.com [IPv6:2607:f8b0:400d:c0d::233]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8789612AF84 for <dnsop@ietf.org>; Wed, 4 Apr 2018 10:19:24 -0700 (PDT)
Received: by mail-qt0-x233.google.com with SMTP id g5so23924802qth.7 for <dnsop@ietf.org>; Wed, 04 Apr 2018 10:19:24 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=fugue-com.20150623.gappssmtp.com; s=20150623; h=from:message-id:mime-version:subject:date:in-reply-to:cc:to :references; bh=VgIvyYOHodb2X1mrW0u3aSLzWoMsxY0W5pAvBahIcwA=; b=Bgly5M/ckdyFLV7Kr1v8ngwt3S2+ZBKv+OBz5lvY/piV9pzPVSPY9LM9o+97zoSiH/ AWxDc9f+0N39UnkRYtabzpg/p1WAV3Ydj1LnFtTLb2y0pS6SgWxhxnPe61ezlIWquOAT Ru2UIwbJqeba2rpxHwQDp0VolTWVf3gtct1Hmte18bVSjy07aBstlINbnhSEvbhT0FoZ XKbJl7utYGxFskVPriORvN1FGKgWdFds17+nujC5yvkTuOWoOYtTufPdr5VA9Kwk3wXR 1/u1oNS/AYpIVt2naYrGp6/+r49/kNfufKRgdF3N+GSvg8vNaVHTGDwKWWzy9f+NixYC AXwA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:message-id:mime-version:subject:date :in-reply-to:cc:to:references; bh=VgIvyYOHodb2X1mrW0u3aSLzWoMsxY0W5pAvBahIcwA=; b=JxvLoFqiZHQmqc1zuJRDkTH/7tE+mR3KM2r4pamAFXdm/JprtYBL9/dYTHgpqiWyQQ StfNiKA9HABOPfKTszAjjbCxc4s1UN3MXIajzE8VHeK/jCfePSom7tfo5qNj1DbbbWHm FJxw3Ini8coGSykphWXJDeaXlSoGSPwQ2UfvSs0USueIg4+Pvx3jQVhwAP+x6SeUfwMJ 9iNQIuEonZIa6q8x8o+HDVOKwT9YKWsDp959w/VwzL+yX3mPU6lYdre40tfBOmFbVOkr 6C/Jyy4H6I7D0sQZM+IWiuWP8Yh02zXZrasNzXMSI/ibYN2Kr3KZqfg2/9ozsA9EhTDK 0mRw==
X-Gm-Message-State: ALQs6tCQ7V37i+wYZVDJwVOgHKh2TqgR6okayVQaYoFvWH9aECZhJ2fR sw6mAYPq8ZvBt1bh7h+uWlvtFw==
X-Google-Smtp-Source: AIpwx495FHeRBq3Ojt66d2Y7E5xj/YlgVEq3gtMoxlBGcm4H8lC2d+4LKFzcH9ytw2gsWa5D91bOgg==
X-Received: by 10.200.15.130 with SMTP id b2mr26751853qtk.322.1522862363623; Wed, 04 Apr 2018 10:19:23 -0700 (PDT)
Received: from cavall.lan (c-24-60-163-103.hsd1.ma.comcast.net. [24.60.163.103]) by smtp.gmail.com with ESMTPSA id k188sm4196641qkb.14.2018.04.04.10.19.22 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Wed, 04 Apr 2018 10:19:22 -0700 (PDT)
From: Ted Lemon <mellon@fugue.com>
Message-Id: <5307DF51-689E-41C3-AB4A-59611EAD4DA3@fugue.com>
Content-Type: multipart/alternative; boundary="Apple-Mail=_34F6B5DD-BC17-4FDD-B616-328837E167CA"
Mime-Version: 1.0 (Mac OS X Mail 11.3 \(3445.6.18\))
Date: Wed, 04 Apr 2018 13:19:21 -0400
In-Reply-To: <5AC5006C.4050308@redbarn.org>
Cc: Ray Bellis <ray@bellis.me.uk>, dnsop@ietf.org, doh@ietf.org
To: Paul Vixie <paul@redbarn.org>
References: <152168039295.5550.9572034766968749020.idtracker@ietfa.amsl.com> <CA+nkc8ANQh2wAr6==eNuM82mbD+E2ELzHGizdqF_sGdY-kkOqg@mail.gmail.com> <5AB3E3B7.3080607@redbarn.org> <69AA6C5D-D348-4956-8A31-FE1EC3A2042E@icann.org> <CABkgnnX2jGY_JpVbqJuQdDVUyVzsuM_2CDg4nppfqQHZQm0F+w@mail.gmail.com> <CAAObRXKHhk51DxNt5uiYB0gunJ=DNde2j9FJSU=Ky2m4Q1UkhQ@mail.gmail.com> <CABkgnnVL0XaUDS-WzDGaN9-kLx9p3x1+UVuWhvx=Zyo5oRos+w@mail.gmail.com> <19BED07A-942E-4A46-93A6-09770083EFF9@icann.org> <CABkgnnX-=n-reO9yjA8a2pHAD+JtoS5wX1w-dXMnDFdt4HXu-g@mail.gmail.com> <23236.18671.182273.977633@gro.dd.org> <28199575-e2e2-6966-fe17-f678f9f397f3@bellis.me.uk> <5AC4C2F7.7050906@redbarn.org> <3630b151-9628-235e-a5b1-c838b777d9d2@bellis.me.uk> <5AC4E70C.7020003@redbarn.org> <A0A55AED-0CB2-478C-913A-DCA678FBAC33@fugue.com> <5AC4F11F.3050009@redbarn.org> <602DF02A-3A85-4B3B-9E11-F7A701BD25B5@fugue.com> <5AC4F3F5.6080408@redbarn.org> <C2CAFEF1-7A0B-496E-9AE0-7229E4B4062F@fugue.com> <5AC5006C.4050308@redbarn.org>
X-Mailer: Apple Mail (2.3445.6.18)
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/c1FOM4W_XQt8sZ9FHyEnzhMbwvM>
Subject: Re: [DNSOP] [Ext] Re: [Doh] Alternate proposal for transport indication in draft-ietf-dnsop-dns-wireformat-http
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 04 Apr 2018 17:19:27 -0000

On Apr 4, 2018, at 12:42 PM, Paul Vixie <paul@redbarn.org> wrote:
> that would be low fidelity. i need to run clients whose internet experience will not be influenced by middleboxes.

I'm having trouble figuring out where a middlebox would be here that would reduce fidelity.   Isn't the point of what you're doing to completely bypass any middleboxes that are in the way?

I think the diagram looks like this:

LAPTOP<----link a---->DNS-over-https-proxy<---link b--->Full Service Resolver<---internet--->Authoritative servers

Where is the middlebox that's going to reduce fidelity?