Re: [DNSOP] DNS privacy draft

Warren Kumari <warren@kumari.net> Mon, 02 December 2013 18:13 UTC

Return-Path: <warren@kumari.net>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C32B71ADBE5 for <dnsop@ietfa.amsl.com>; Mon, 2 Dec 2013 10:13:37 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.901
X-Spam-Level:
X-Spam-Status: No, score=-1.901 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RP_MATCHES_RCVD=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 2ZIPOEa5RRiu for <dnsop@ietfa.amsl.com>; Mon, 2 Dec 2013 10:13:35 -0800 (PST)
Received: from vimes.kumari.net (smtp1.kumari.net [204.194.22.1]) by ietfa.amsl.com (Postfix) with ESMTP id 951631ADAEA for <dnsop@ietf.org>; Mon, 2 Dec 2013 10:13:30 -0800 (PST)
Received: from [192.168.0.187] (c-98-244-98-35.hsd1.va.comcast.net [98.244.98.35]) by vimes.kumari.net (Postfix) with ESMTPSA id 14B391B40379; Mon, 2 Dec 2013 13:13:28 -0500 (EST)
Content-Type: text/plain; charset="us-ascii"
Mime-Version: 1.0 (Mac OS X Mail 6.6 \(1510\))
From: Warren Kumari <warren@kumari.net>
In-Reply-To: <20131202075750.GA28341@nic.fr>
Date: Mon, 02 Dec 2013 13:13:26 -0500
Content-Transfer-Encoding: quoted-printable
Message-Id: <B05D353D-BB98-4CC4-9FF8-CEBDA459E200@kumari.net>
References: <20131127114007.GA3082@nic.fr> <1ACF9F7F-8D5B-4671-8DD4-213A984CBB3F@vpnc.org> <20131127153627.GA30675@nic.fr> <F033D08E-E08F-41FB-B6B1-C3B0F3417C94@vpnc.org> <20131201200931.GA31672@sources.org> <837E4222-85CD-47E3-B44F-5735F3D109EF@vpnc.org> <AC03AF8C-1921-404F-B90B-43B7B6EF14CA@nominum.com> <AD690D03-DE67-4B30-B0BB-93EA072EF1B8@vpnc.org> <3984C2A6-D6A6-4EFB-A484-67F6D92A1646@ucd.ie> <20131202075750.GA28341@nic.fr>
To: Stephane Bortzmeyer <bortzmeyer@nic.fr>
X-Mailer: Apple Mail (2.1510)
Cc: dnsop WG <dnsop@ietf.org>
Subject: Re: [DNSOP] DNS privacy draft
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 02 Dec 2013 18:13:38 -0000

On Dec 2, 2013, at 2:57 AM, Stephane Bortzmeyer <bortzmeyer@nic.fr> wrote:

> On Sun, Dec 01, 2013 at 11:31:26PM +0000,
> Niall O'Reilly <niall.oreilly@ucd.ie> wrote 
> a message of 11 lines which said:
> 
>>>  padding (sending random queries from time to time)
>> 
>> a better word might be "chaff"
> 
> OK. And do note "chaff" may be a by-product of
> draft-wkumari-dnsop-hammer.

Um, please explain.

Hammer (and the various similar, actually implemented things) simply trigger lookups a few seconds before the TTL would naturally expire *in response to an incoming query*.
The additional number of queries is small (a bit less than lowering your TTL by HAMMER_TIME).

W

> ____________________________
> ___________________
> DNSOP mailing list
> DNSOP@ietf.org
> https://www.ietf.org/mailman/listinfo/dnsop
> 

--
Credo quia absurdum est.