Re: [DNSOP] I-D Action: draft-ietf-dnsop-refuse-any-02.txt

Matthew Pounsett <matt@conundrum.com> Tue, 26 July 2016 15:41 UTC

Return-Path: <matt@conundrum.com>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 87B5A12D896 for <dnsop@ietfa.amsl.com>; Tue, 26 Jul 2016 08:41:45 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.599
X-Spam-Level:
X-Spam-Status: No, score=-2.599 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=conundrum-com.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id XH9PM1tIaiAH for <dnsop@ietfa.amsl.com>; Tue, 26 Jul 2016 08:41:41 -0700 (PDT)
Received: from mail-qt0-x22a.google.com (mail-qt0-x22a.google.com [IPv6:2607:f8b0:400d:c0d::22a]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6142C12DCBF for <dnsop@ietf.org>; Tue, 26 Jul 2016 08:09:03 -0700 (PDT)
Received: by mail-qt0-x22a.google.com with SMTP id u25so8850364qtb.1 for <dnsop@ietf.org>; Tue, 26 Jul 2016 08:09:03 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=conundrum-com.20150623.gappssmtp.com; s=20150623; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc; bh=BVoDRwml12iGgKWl9ct0xHu6XQTsMd3vAjkD+sztRws=; b=lrPIfKmHrcqe7tCZz/Ep1u+U7Gbb9mtUb5kGNFcT7jWNTpUWGBCxb4CB6xYTDM2dSa OGQ8GpouMozjka5AxFLg9CT7LQ8I0m0ekE2ddLDhYUVD5t2ff89UqUWD1C6IWrdncUhu 9/d0Y1I/uJAmaDglCsimEbQLSq8E5SwUXQmsXN3bYFrlfKqMsVLExH2V+WM2oFoc+lc8 orisHY+b3dzGUMpxRQEQQXMVwzId8mdDxaIxsN8blZ7P7hy0gkBTjrgQDffmpNyTAXsx Wm6l5s5+44LJJvY80vhaWSajeVvqdU55Z9F3CbtwYx+wHdAz94q54nHbmn855zAAQYlA zkBw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc; bh=BVoDRwml12iGgKWl9ct0xHu6XQTsMd3vAjkD+sztRws=; b=keZlX8L9x5AXc5nkA/inyVveHWTj8qjb/wkqnmxBC44PN1doa8osrpmobZfg76i2yM JnZCZCnRGoBBQonWlzRuwUkd0nxgqsY2KZH92pM1nVEFNqC7oaLGLDzg+lxgHfUVs2ZK +aWWhDsXWXrRjTQJuSGUikEz0lnqiGB4K3Ec8HvSoSA+opzLDSH8husutga9QGSjBUnV eH97/kVQVobt3lHGUItizxtAhAmUY5/ZQFJm3WRIIvRqD4RV2Eh/1eYCawn+p2Hnmslu sSWxPlDSVlAu9mWPT7Kur5d6e1RJoddh/qEAB8h34eq6VOdy0zr7T11Jmv53KVfHoT7+ ayOg==
X-Gm-Message-State: AEkoouvHBm8ghrzPlT1YaZWa+yrvVH/eRbKVhzkMhJV8XsEP/+1wX9V85+7zsRvCxoo5Xp/misdaZgmvIsr/NQ==
X-Received: by 10.200.46.216 with SMTP id i24mr38570799qta.79.1469545741510; Tue, 26 Jul 2016 08:09:01 -0700 (PDT)
MIME-Version: 1.0
Received: by 10.237.46.194 with HTTP; Tue, 26 Jul 2016 08:09:01 -0700 (PDT)
X-Originating-IP: [192.0.221.246]
In-Reply-To: <CAN6NTqwuFHwGCm1q9xPzx-Zcm4n-GdD9azo4Dy+kBqahCL=JMg@mail.gmail.com>
References: <20160725103841.11473.11135.idtracker@ietfa.amsl.com> <CAN6NTqwuFHwGCm1q9xPzx-Zcm4n-GdD9azo4Dy+kBqahCL=JMg@mail.gmail.com>
From: Matthew Pounsett <matt@conundrum.com>
Date: Tue, 26 Jul 2016 11:09:01 -0400
Message-ID: <CAAiTEH8D5NwN5SSarzRUn30qQn1+Mzbk8++mRUf1+z54EzXSYw@mail.gmail.com>
To: Ólafur Guðmundsson <olafur@cloudflare.com>
Content-Type: multipart/alternative; boundary="001a1147da50e7a7ed05388b471d"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/esIeeva2AcRdxe7YkPf9451mu00>
Cc: dnsop <dnsop@ietf.org>
Subject: Re: [DNSOP] I-D Action: draft-ietf-dnsop-refuse-any-02.txt
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 26 Jul 2016 15:41:45 -0000

On 25 July 2016 at 09:37, Ólafur Guðmundsson <olafur@cloudflare.com> wrote:

> This version contains minor text and structure improvements suggested by
> TimW.
>
> Editors think the document is ready for WGLC
>

I'd agree.  A comment though:

I missed this earlier, but in 2. Motivations, third paragraph... between
-00 and -01 the phrase "a DNS operator MAY prefer not to send large ANY
responses" appeared.  Since that modifies the feelings of the operator, not
their actions, is that really an RFC 2119 "MAY"?  I'd suggest either
lower-casing the MAY, or change the sentence to something like:
"If a DNS operator prefers to reduce the potential for information leaks,
they MAY choose not to send large ANY responses."

Grammar nit:
§3, paragraph 4:  "This proposal specifies two different modes of behaviour
by DNS responders, for names that exists." should probably be "This
proposal specifies two different modes of behaviour by DNS responders for
names that exist." (drop the comma and make the tense of the verb agree)




> Olafur
>
> On Mon, Jul 25, 2016 at 6:38 AM, <internet-drafts@ietf.org> wrote:
>
>>
>> A New Internet-Draft is available from the on-line Internet-Drafts
>> directories.
>> This draft is a work item of the Domain Name System Operations of the
>> IETF.
>>
>>         Title           : Providing Minimal-Sized Responses to DNS
>> Queries with QTYPE=ANY
>>         Authors         : Joe Abley
>>                           Olafur Gudmundsson
>>                           Marek Majkowski
>>         Filename        : draft-ietf-dnsop-refuse-any-02.txt
>>         Pages           : 9
>>         Date            : 2016-07-21
>>
>> Abstract:
>>    The Domain Name System (DNS) specifies a query type (QTYPE) "ANY".
>>    The operator of an authoritative DNS server might choose not to
>>    respond to such queries for reasons of local policy, motivated by
>>    security, performance or other reasons.
>>
>>    The DNS specification does not include specific guidance for the
>>    behaviour of DNS servers or clients in this situation.  This document
>>    aims to provide such guidance.
>>
>>
>> The IETF datatracker status page for this draft is:
>> https://datatracker.ietf.org/doc/draft-ietf-dnsop-refuse-any/
>>
>> There's also a htmlized version available at:
>> https://tools.ietf.org/html/draft-ietf-dnsop-refuse-any-02
>>
>> A diff from the previous version is available at:
>> https://www.ietf.org/rfcdiff?url2=draft-ietf-dnsop-refuse-any-02
>>
>>
>> Please note that it may take a couple of minutes from the time of
>> submission
>> until the htmlized version and diff are available at tools.ietf.org.
>>
>> Internet-Drafts are also available by anonymous FTP at:
>> ftp://ftp.ietf.org/internet-drafts/
>>
>> _______________________________________________
>> DNSOP mailing list
>> DNSOP@ietf.org
>> https://www.ietf.org/mailman/listinfo/dnsop
>>
>
>
> _______________________________________________
> DNSOP mailing list
> DNSOP@ietf.org
> https://www.ietf.org/mailman/listinfo/dnsop
>
>