Re: [DNSOP] New Version Notification - draft-ietf-dnsop-dns-catalog-zones-09.txt

Willem Toorop <willem@nlnetlabs.nl> Thu, 09 February 2023 13:34 UTC

Return-Path: <willem@nlnetlabs.nl>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0AE67C139C64 for <dnsop@ietfa.amsl.com>; Thu, 9 Feb 2023 05:34:00 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.855
X-Spam-Level:
X-Spam-Status: No, score=-0.855 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, NICE_REPLY_A=-0.001, NORMAL_HTTP_TO_IP=0.001, NUMERIC_HTTP_ADDR=1.242, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=nlnetlabs.nl
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id B92bBq-8hhg2 for <dnsop@ietfa.amsl.com>; Thu, 9 Feb 2023 05:33:55 -0800 (PST)
Received: from mail-io1-xd2d.google.com (mail-io1-xd2d.google.com [IPv6:2607:f8b0:4864:20::d2d]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5ADEBC14CE44 for <dnsop@ietf.org>; Thu, 9 Feb 2023 05:33:55 -0800 (PST)
Received: by mail-io1-xd2d.google.com with SMTP id j17so653806ioa.9 for <dnsop@ietf.org>; Thu, 09 Feb 2023 05:33:55 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=nlnetlabs.nl; s=google; h=content-transfer-encoding:in-reply-to:references:cc:to:from :content-language:subject:user-agent:mime-version:date:message-id :from:to:cc:subject:date:message-id:reply-to; bh=G40mBLZtNqAJGJmac3IAYUoWYtV119+se6kBd4VURVY=; b=UHU6CE4RAQBn4skYGrqp/WAKqVZSZ5ylwzhXkjtcNQwRyn20waF9v5Xy6JXBujVsJv XjrKQ6Es4O9l7hdbDgFRordFZ84F5rkBk4f4w66aaJrDRBDdjmr2h5r42m3vSLMJBntv MR0zd2yYyMWyisPFShWgvfjLn5zcXYupzrCFeE5zKpHDk3ay4BI7qByMFGjiT2YsPDla w4ESbP9DmMNRRYAqlc0CvBwczeNEegY0+mggJld4BW3tmQCIh3iNIfVUMt6Mp5Y7VkNo yj9GMlMpOirkC0gZExo7QkN1GOOnnuLMqyj9SPs4Q8qzyQVlmq5u5+iapKRS1YwbCCsF mVHg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=content-transfer-encoding:in-reply-to:references:cc:to:from :content-language:subject:user-agent:mime-version:date:message-id :x-gm-message-state:from:to:cc:subject:date:message-id:reply-to; bh=G40mBLZtNqAJGJmac3IAYUoWYtV119+se6kBd4VURVY=; b=3BMcr8youwQgqkZWIuAx6cY7utMUyMq8beYA9qEsuAo7DJ9feK8gHZ39g/cMWL3WAU U5ZBdyly0qzy44vg5WCCGlP5SnQ7Bdf+Z7d2e0EJ0navh48l1gbgaggBkzFHSsO3kSPa oCGvzWVxSJUeHAmk4dIYFUcLgKh+HOUCXaRic4TakJ7hMD2JMn+cq0alMp8prXIXA4pm hp2E34Od2xcj9kyZrOb5RdbCrAWDA024X+BIne6aVt5a0fcrZN7A1czBy7E636ZU4VDC s/XSDH3VaQOmzel56c8kTn2YmhRsKfvdCQLNgTk8JR/IRuUeW40lt0rQr6y9xU4qpjXU vaqA==
X-Gm-Message-State: AO0yUKWEgxoctJdQxg/cycuYhjbb2RXZ/DN7aTV/OXgz8mYE/xAxBLxt LFVBqNXxanrC3/845byU0uexGA==
X-Google-Smtp-Source: AK7set9nXyKKPHOunKxrTHoOMQBzba8I3b3J43JNSgj3YCsxcyq/GRGFeKpkftaIiYNAEAbkR/+KpA==
X-Received: by 2002:a05:6602:1:b0:713:7b7c:46d2 with SMTP id b1-20020a056602000100b007137b7c46d2mr4045587ioa.15.1675949634297; Thu, 09 Feb 2023 05:33:54 -0800 (PST)
Received: from ?IPV6:2a04:b900::7d0? ([2a04:b900::7d0]) by smtp.gmail.com with ESMTPSA id y202-20020a6bc8d3000000b007380737f6ffsm423536iof.29.2023.02.09.05.33.52 (version=TLS1_3 cipher=TLS_AES_128_GCM_SHA256 bits=128/128); Thu, 09 Feb 2023 05:33:53 -0800 (PST)
Message-ID: <57d408d1-4533-9ed9-3656-38f05dc87b4a@nlnetlabs.nl>
Date: Thu, 09 Feb 2023 14:33:51 +0100
MIME-Version: 1.0
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:102.0) Gecko/20100101 Thunderbird/102.7.1
Content-Language: en-US
From: Willem Toorop <willem@nlnetlabs.nl>
To: Paul Wouters <paul.wouters=40aiven.io@dmarc.ietf.org>, Kees Monshouwer <keesm=40monshouwer.eu@dmarc.ietf.org>
Cc: draft-ietf-dnsop-dns-catalog-zones.authors@ietf.org, "dnsop@ietf.org WG" <dnsop@ietf.org>, Tim Wicinski <tjw.ietf@gmail.com>, "Murray S. Kucherawy" <superuser@gmail.com>
References: <167577800490.53807.9257358286100121972@ietfa.amsl.com> <CAGL5yWZNzyJWcZ2eLL6Yw0JFNusPQo2AQHr678C8kXGHio4-Lw@mail.gmail.com> <edcd7b0c-e47d-e2bd-8932-d50dbdfd0f23@monshouwer.eu> <CAGL5yWZU7oKCuLqH_6yfb6Qo2u-GsuuaSwZ1KsPcVYmQM+tF5w@mail.gmail.com> <9b5d95f0-3b45-28cf-5d17-b4816516a8d8@nlnetlabs.nl>
In-Reply-To: <9b5d95f0-3b45-28cf-5d17-b4816516a8d8@nlnetlabs.nl>
Content-Type: text/plain; charset="UTF-8"; format="flowed"
Content-Transfer-Encoding: 8bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/fL6CUHRnOhNxlG2difI23yOZn3E>
Subject: Re: [DNSOP] New Version Notification - draft-ietf-dnsop-dns-catalog-zones-09.txt
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 09 Feb 2023 13:34:00 -0000

Op 09-02-2023 om 12:38 schreef Willem Toorop:
> Op 08-02-2023 om 14:27 schreef Paul Wouters:
>> While re-reading the properties / version bits, I noticed this text in 
>> section 4.3.2.1 <http://4.3.2.1>:
>>
>>        In this scenario, consumer(s) shall, by agreement, not sign the 
>> member zone "example.com <http://example.com>." with DNSSEC.
>>
>> Since the "nodnssec" got removed, this sentence makes no more sense to 
>> me. How does the example "show" the
>> meaning of "not sign the member zone" ?

Sorry, I stand corrected.

Before the example is a paragraph, with the first mention of the value 
"foo", stating:

    ``For example, the "foo" group could be agreed to indicate that a 
zone not be signed with DNSSEC.''

I have reverted the previous commit, because of its redundancy.