Re: [DNSOP] New draft on delegation revalidation

"Giovane C. M. Moura" <giovane.moura@sidn.nl> Mon, 11 May 2020 12:59 UTC

Return-Path: <giovane.moura@sidn.nl>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5AD493A0A94 for <dnsop@ietfa.amsl.com>; Mon, 11 May 2020 05:59:30 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.101
X-Spam-Level:
X-Spam-Status: No, score=-0.101 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, MSGID_FROM_MTA_HEADER=0.001, PDS_OTHER_BAD_TLD=1.999, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=sidn.nl
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 9zJMKOF6qzJt for <dnsop@ietfa.amsl.com>; Mon, 11 May 2020 05:59:28 -0700 (PDT)
Received: from EUR05-DB8-obe.outbound.protection.outlook.com (mail-db8eur05on2047.outbound.protection.outlook.com [40.107.20.47]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 36A7A3A0A99 for <DNSOP@ietf.org>; Mon, 11 May 2020 05:59:27 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=DIcVU9Owh79if3ZiIyHkFORRT/i+Glfs2apDnWc1AiMmmDhOnihvqjGYVfBcSGyTDc7OPd/y4NWXCIh2xHHO64/5v+2DMBJFc6B4Qxopt3I7F91rQy+2469TKnc9wW2rxArRWuumJWjCTnfBSDknjnGS6pOzj/G6i3yxAylVasBFpU7g4tjKZU2Nd2gttJkV62RqkpZfTwdsCwa9GOdgPQAg0Pe0Uu/a1aK3/Yeey5FMx+1hyo/qEqAmtAQc0ZhEVC09D/Wu1Hn+6FCeQI3VOGy9m8ZPJ2XaOoFWuiDqVuWWPsD32nkYp48PVPYklW4YWl9lCVVsKqMeeNh4dMhnLA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=6DEfVdN+WVI/NobOMzhijWDpZjQSuUfwzRWuhQG6n4Q=; b=i4foe1l+TkWaSdTnI8tDN4Eyg3K8ukKxi+FqURjNcuY0jHiCSSEkAR161Jvri0dtPCq2wlLcV/IZHsAbAMpwuUOQ0c8O5qa/TsgcqJvm5wGj8qV6Ec7fClUTD7c7HNVkmXuMEfCsn/JqV7kaa/hi2POLgQm8DHjDi9/pN+eVfEa4CmiyJuNNe8AIf1iqZGP++pgykpClfsWBfVkvnzZ3CmoFAFVWNs3s6YJtElF+RwrscL7jz1p22WpXVe+SnGCO7wN53/kzfJC5E2zqwz2RXNjgMIxOZFc1j/hs04Pp2ZBvXXirT9xUn5MxxwgbmgId43f3gJnqiClBMFRFYi5+qA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=sidn.nl; dmarc=pass action=none header.from=sidn.nl; dkim=pass header.d=sidn.nl; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=sidn.nl; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=6DEfVdN+WVI/NobOMzhijWDpZjQSuUfwzRWuhQG6n4Q=; b=GvJxrk5k7/itB/ymCMxU95k0mQPipBY1HSajOCYLAV3PXYxnmeSLenGtKEw5lfBrXIHtDh4T2qeysx5QCrNRDdR2SO6i1eI9AKpguNDVcFqF1esuq7hnlYa0LQo74PqwBH8ArI3trynM4DXIHLWD7z+ubTLv0Bd+tObp/EVXg+w=
Authentication-Results: utwente.nl; dkim=none (message not signed) header.d=none;utwente.nl; dmarc=none action=none header.from=sidn.nl;
Received: from AM0P194MB0257.EURP194.PROD.OUTLOOK.COM (2603:10a6:208:61::31) by AM0P194MB0483.EURP194.PROD.OUTLOOK.COM (2603:10a6:20b:162::18) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2979.30; Mon, 11 May 2020 12:59:25 +0000
Received: from AM0P194MB0257.EURP194.PROD.OUTLOOK.COM ([fe80::40dc:96f0:d873:6848]) by AM0P194MB0257.EURP194.PROD.OUTLOOK.COM ([fe80::40dc:96f0:d873:6848%6]) with mapi id 15.20.2979.033; Mon, 11 May 2020 12:59:25 +0000
To: IETF DNSOP WG <DNSOP@ietf.org>
References: <CAHPuVdV9eSCLQOqMF0cq8fHcuSZs7nCgjhHMfMoaV5H=ekbtSA@mail.gmail.com> <4feca627-79d6-374e-402d-f50d49e03469@sidn.nl> <CAHPuVdVkTbV6o5sVCZzOcE4y0yEFUa3rmtcsWooxQK0nO_eMvw@mail.gmail.com> <058d760a-7400-e407-4d12-c744d949538e@sidn.nl>
From: "Giovane C. M. Moura" <giovane.moura@sidn.nl>
Autocrypt: addr=giovane.moura@sidn.nl; keydata= mQINBF14qwEBEAC7A6IGvwbFinLND4AFjFycPiM5Y3qudODE0kiYBPy5d4NIT4uAthSm2FPp 3kUNxMtlZI5NR0Ie/kI2NLdpS6MLpkKtO30D2GIQjaQ58emUnWAxkH94RDB5cJ69mmVxIUnv cpZEOrCvBcJU3SIhnXTfga8AFEct5Sb6XRYy8kblGXcH/6W1XTckcb4g/SejszC2oiiV3cZH HS3UCJvMfY1/6ojq6Cot6jgs/3M56PZI9odsYATu84JNaKqFv1rbD1lf7hYOM5sri6OqrPad qBOCT5DWbdxHvi6JzLNhuxxag/BtJPfLxMFDm+C6P0FKSjY78EzY6Ne2MKlLSDGQWyAHXZae X9RO/0t64LEWBLXmVS1KtIAPt0TgGodhr5d7jXP2maFmgO2+rWhGBBEeC9y9oRRJuBGFzl8w 0wMp1RDNipomtjWPZIIsuWiNKAF/iaPcTr6ZjaNOhnX+Kuqh3X7rr546RYtDDCVWVDpLKZmn 1scrRGKnhvPQsBiuICp5Up6sHNxh30c0n2PJeUZYlhLiZTuzG3rUSg7TLx7d39V4/XyjNr1p ordddIzM2zcGCNP0IgyjdMzjFljL01liMhENXmSagwDLQsOuExcZfawWviPEB2Rzz39obuxi L08RPrtnptcjkx0n6JFtkQUBOLGodtWWLs9cVF4Lic7aJswg6wARAQABtCtHaW92YW5lIEMu IE0uIE1vdXJhIDxnaW92YW5lLm1vdXJhQHNpZG4ubmw+iQJOBBMBCAA4FiEEkUlxD1iA/bYW 8LYoeMuqlaSXxY4FAl14qwECGwMFCwkIBwIGFQoJCAsCBBYCAwECHgECF4AACgkQeMuqlaSX xY7A/w/9FSp5N5rGcWe9bK8+k06e5dcxYRphMMHpC6hnrvyfgZgvepkhx9jK8HOevF1xk/Xa 8MR53fP0wo+2ZXSPJNgkzITFFypHfM2LLxh1/Lm2KnwR58OuX/E1juvOx5FseDrVjcmOL1s/ vtm0s4nlbzCSwrvBfnpsSXmQvseQHcm82Oto78p7YxgUNoxjPkaUkmekDMm8TWwctTummYfM vHzKgKSVCCBNJayRRR6+pw+UG5mnlvUgv96AwK7CUF2pjlwIFKx6cVDDD3M17ZUP6zsPQ+HB 8m0DtQFtAu1mU/OXeNk54jKm4b2A1gXwNnh11e7uPzS5hrjz9znwyTLLw1fJPySYUVMDhuu4 EI+L2Goi1DrhLunQ72YRIKHF3jVjDd6eHenk9Qq44WfuYOE1PSdIKjhS0DfOZgy/C4DWkot/ XfZ40dlaV1eLb/fjWw1/GY3FYZIxxPvFV5tg+Fjn4pqiqy2XvCBrIzMYG0X4u3A4Kvjnblh0 9G/bD8lzx6mUymDvZ/PHk8+mhp9obA+LcmLHt+lkNyR73vT1ZTrQWqrzMTlXN7guFWSOrCOm toWgVu63L9LsFKiUllkctXGhFzaERQT85h6ugovq7Bk0Qf0NBvHcwxgBdUa/uqp9Frcm4gT3 pZFepXY4Q63nL/y3Ay65rouurVPsSUTghuzgRaZ1ePq5Ag0EXXirAQEQANJeW4E1yFJ8RIdH /LUp7ZjLSQZjxLi0J6Jz8q60ZCFOEBh++i0nmYljEHG1HHqvMzv7x7EEg2ZaQmk6l8ZF4CuG oy8xjKLyM1v7k3i/GPwHEmWAKR6VxwBflE4ISL0bwecOuBubemSsQYaHBvydTg/sSkCz2YcF inec4o4Ertu4HCo0c+LlzcWWcb1/O6vUaOGCH0LBXT2btbDMzOgSBTeRCHP/aLIClkjNmvRc mQIszCCriuqlapNWTzIm8WVfD5Ho/ZyrtgeSbqk5I4by9eyAJNDKi05NgR1vY85tQ/hNIN90 8RcVK7OvGrQ9NgJpk3oFeaCkAXbhq5HfAI2tWnj3lrPLa7FP//YoYVY/Teqb+Ehp1CiVkeHf F2yGRsSWa+99Ii3nM3E8CpJu+SS/M1zbQlBgvGT+liXMfvJ/7wzAivTdIsy94uiWbLvrmF6V g6Iwq6d9O+/3j8gvcl0OXvUzNO9Qjb3+dL9hoKZ4GPUN9nYP34KcGLgdeyi0/DeKTLDODbXA scoQ+V96JmJzMW+UXkIyfq27MVyZLnJMtwD9On2/vSaNjXD2imfUbtHU0+7FvET8qzzJUBII IYz0dA5UmQx2/PKqDLh5DWdaWZa1cf6RqQ+FE10ePot+RjTU3ojiYqbzJ9Nm8WazV2ibAMg9 gozAb/oRmp7vzZURc21PABEBAAGJAjYEGAEIACAWIQSRSXEPWID9thbwtih4y6qVpJfFjgUC XXirAQIbDAAKCRB4y6qVpJfFjo9sD/9iqHO8MMaMBhefBJs5imU+TMarHto+OLfsnGTQarqH GfyvCB6LmY0ZP92jXtMe9hx0dt8SrlGOtwsFoqcvSk5L5yaFde1aG2o3a21mlcyMRhljzME9 RgnN61pB/rfg8yjbxNbhBgKjQCO/2fyJIcp9Er2qKmJYGV7UkP3Fl5SHMs6Z9IiDhRQjhpKZ iXRpQUofHggErvV7//j8ALLEReVjfEg049EZ1U5VQosroXzkbSPfpAHjW4d+MdCM38WYC3Ap fk7qY1vZV3YTj/eD7j4b772xMMlUdPm6Vl83sAY/OP5ZFCe/f8HUwaRYm6zwhnRug8tI2g05 N3/yBVbmc047gtXTFuW0ZhHkN26rSl6e+gtfhoh0CigfixHRFI6TWrtF5APVxW+WJ1N990w1 RXXHCn8ZGVJ9u8sglWPSWwK8vVhhbZQVtPUkUegN0Zj7nqHz+5nHtqsF6ddIN65akf+CqArU /iVwvA5gsvid2vyunM88MlUplJBmAXtMEyCpvTyfDTT7jYY15ZpaO3jlHyiagwVhVrxgsw+B N0RmT/zoqKN33zuhSmrxw0+vU+gq2BZLjpjZRnnjeoFwKo3qNWKx7BRTxzOG5eMoGzrvO7dF Xt5QjjOQ4cFtq4ryW8qDfmDd4mLYyMcRO/hOPPq30pW9emtiXFABb8JvwfEusod+mQ==
Message-ID: <b6772ece-b09c-8acc-74dc-860f864df863@sidn.nl>
Date: Mon, 11 May 2020 14:59:24 +0200
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:68.0) Gecko/20100101 Thunderbird/68.8.0
In-Reply-To: <058d760a-7400-e407-4d12-c744d949538e@sidn.nl>
Content-Type: text/plain; charset="utf-8"
Content-Language: en-US
Content-Transfer-Encoding: 8bit
X-ClientProxiedBy: AM0PR10CA0033.EURPRD10.PROD.OUTLOOK.COM (2603:10a6:20b:150::13) To AM0P194MB0257.EURP194.PROD.OUTLOOK.COM (2603:10a6:208:61::31)
MIME-Version: 1.0
X-MS-Exchange-MessageSentRepresentingType: 1
Received: from [192.168.1.172] (31.21.111.111) by AM0PR10CA0033.EURPRD10.PROD.OUTLOOK.COM (2603:10a6:20b:150::13) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2979.26 via Frontend Transport; Mon, 11 May 2020 12:59:25 +0000
X-Originating-IP: [31.21.111.111]
X-MS-PublicTrafficType: Email
X-MS-Office365-Filtering-Correlation-Id: bbb9ef2f-dd25-4b18-cb81-08d7f5ab21f1
X-MS-TrafficTypeDiagnostic: AM0P194MB0483:
X-Microsoft-Antispam-PRVS: <AM0P194MB04837DB02CFB5A741FC5C1EAF1A10@AM0P194MB0483.EURP194.PROD.OUTLOOK.COM>
X-MS-Oob-TLC-OOBClassifiers: OLM:8882;
X-Forefront-PRVS: 04004D94E2
X-MS-Exchange-SenderADCheck: 1
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:AM0P194MB0257.EURP194.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFTY:; SFS:(4636009)(346002)(366004)(376002)(39840400004)(396003)(136003)(33430700001)(6486002)(186003)(16526019)(5660300002)(26005)(52116002)(16576012)(316002)(966005)(2616005)(956004)(33440700001)(31686004)(4744005)(83080400001)(31696002)(86362001)(478600001)(8936002)(36756003)(66556008)(6916009)(66476007)(66946007)(8676002)(2906002)(43740500002); DIR:OUT; SFP:1101;
X-MS-Exchange-AntiSpam-MessageData: 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
X-OriginatorOrg: sidn.nl
X-MS-Exchange-CrossTenant-Network-Message-Id: bbb9ef2f-dd25-4b18-cb81-08d7f5ab21f1
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 11 May 2020 12:59:25.5470 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-CrossTenant-Id: ab4d3626-c1c5-4a75-ab85-427f1a644a7d
X-MS-Exchange-CrossTenant-MailboxType: HOSTED
X-MS-Exchange-CrossTenant-UserPrincipalName: ydgK0QAJCve8V4hE4o5SJUUpfZeflqpMv+QgIedc02EPT0yvBN2FM7i1RV1HmjvHuciAwv1JbQsK4cvOl4g+fA==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM0P194MB0483
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/iZmPfjzVXX3qWGUq3tTp_ZQqlnE>
Subject: Re: [DNSOP] New draft on delegation revalidation
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 11 May 2020 12:59:31 -0000

>>  Do you plan to maintain the parent/child disjoint NS 
>> domain (marigliano.xyz <http://marigliano.xyz>) going forward? And what
>> about the test
>> domains for other types of misconfigurations?
> 
> Great idea. Let me look into this, will get back to with that.


Done. Check http://superdns.nl :)

Marco and I (mostly Marco, I've got say) set up this website and all the
delegations/records that replicates the setup of the paper.

We did under a diff domain for sake of simplicity for us and differently
from the paper, we create 4 delegations, each one corresponding to one
of the scenarios (in the paper we change the NS configurations in
between experiments, we want a static setup here for folks to test).

Hope it helps and if you need any help, let me know.

/giovane

ps: Raffaele, the first author of our paper, will present the study on
RIPE80 on Tuesday's plenary:
https://ripe80.ripe.net/programme/meeting-plan/plenary/#tue4 , in case
you want to check it out