Re: [DNSOP] DNSOP Call for Adoption - draft-west-let-localhost-be-localhost

Warren Kumari <warren@kumari.net> Wed, 06 September 2017 17:12 UTC

Return-Path: <warren@kumari.net>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9255713292F for <dnsop@ietfa.amsl.com>; Wed, 6 Sep 2017 10:12:46 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_NONE=-0.0001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=kumari-net.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id GULcx5mpkbSp for <dnsop@ietfa.amsl.com>; Wed, 6 Sep 2017 10:12:44 -0700 (PDT)
Received: from mail-wr0-x234.google.com (mail-wr0-x234.google.com [IPv6:2a00:1450:400c:c0c::234]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 52B9F13292A for <dnsop@ietf.org>; Wed, 6 Sep 2017 10:12:44 -0700 (PDT)
Received: by mail-wr0-x234.google.com with SMTP id o42so4575621wrb.3 for <dnsop@ietf.org>; Wed, 06 Sep 2017 10:12:44 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=kumari-net.20150623.gappssmtp.com; s=20150623; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc:content-transfer-encoding; bh=V8u4vg7Ka+CRRZlrglA2tg7D3qNNUI/fxbSlTxTzsBc=; b=oGVzmAcFR0TnUpvKgIs3m4fwqGm03rpqZH4gIxNbxDu2ocropee8YZhm36dXwHlJQ5 0bh8x+U6lmgfLqaoVOnRVEg+QqehwH540FRJOih2vEvlMNsnc10RM12w2KNj41tnvafH HZKk/HeMvhIdm/a5brAijlmZ+gnV3PHBp0iYcZh2VMxZ0E7LsEgdN0tF6mUcyGboXW2t pKHzz2BUfyNk9JIubPg94baseVTbzU5YoyacIlXYqZu5DhoVv2xhaaT238o7Zj5807re yfqN2GJD/9nb9Q+NUhdI0k7D526Z8WeSk3JbRdDMZkKb9oRRcqnLKKzZQF512OeROa+Z 8OsA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc:content-transfer-encoding; bh=V8u4vg7Ka+CRRZlrglA2tg7D3qNNUI/fxbSlTxTzsBc=; b=Nu/oK1t284V78CI4R/KyyGnIghhebOPFFAUQRjzDePQxi0MH1MRmeeOIzaKFzdgF4M lIo0qftaILn3MqMtoStnjryyGfmIf2TaL6LvuXYjlJDE6OlAkkLN5zDWrDG3pg9H4AiE FSGL7MMBhvlHBZNVF760Glanlowc1+lMdIBnlOnnb09uXhtsR9ie9di8e3x0x9R/kKjY G+Cx+7NNkjfhwkllCdI7c1zxHUlQzpVkD/93isPI39hXrFJtDvhfj3DaFZE0dt6+wcB4 y/M7E0y3chkZXf+esqmtUebdNIGzTpxgKA+kRy82quwd/Lm8zbIYlDplN1BtBykJfajh 9gkA==
X-Gm-Message-State: AHPjjUjXhhveAXLr/Ynnhf8dRSBrnMeGtYgI8irQ2ZAefSYjGNAwDyDn IbTOdJzrLbPZVVPlNPy0RD6gRYo0Iyoj
X-Google-Smtp-Source: ADKCNb6aZwEIS5pt/QVVG5ASO1ls3dx/8bS9dt5gzErrzEduVH5lwEIE/PNnh+ezImo//yUbEEuvGBUchXlRhjO+xz0=
X-Received: by 10.223.134.168 with SMTP id 37mr2078143wrx.311.1504717962781; Wed, 06 Sep 2017 10:12:42 -0700 (PDT)
MIME-Version: 1.0
Received: by 10.223.164.135 with HTTP; Wed, 6 Sep 2017 10:12:02 -0700 (PDT)
In-Reply-To: <93C3A47F-07C4-443F-AB87-B5C29F6B6774@fugue.com>
References: <CADyWQ+EZQY9i5-4Ce-NZykwC+sS6iY868Wg0crW6KAZTGQxFQg@mail.gmail.com> <24CD1C88-58C5-4D6C-9F00-E3A2CD8C657C@fugue.com> <CADyWQ+Ex23QVef3AegWB4Jgd-sjG-G4z7XmXL9guN8PeWtsssw@mail.gmail.com> <93C3A47F-07C4-443F-AB87-B5C29F6B6774@fugue.com>
From: Warren Kumari <warren@kumari.net>
Date: Wed, 06 Sep 2017 13:12:02 -0400
Message-ID: <CAHw9_iKBDY9hNThOY3GDeG7BbCkc8Ncy1T=rjpcQ=h5qdB7=UQ@mail.gmail.com>
To: Ted Lemon <mellon@fugue.com>
Cc: Tim Wicinski <tjw.ietf@gmail.com>, dnsop <dnsop@ietf.org>
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/lEIIpk45_uIvRAz22EiFHhDGrxo>
Subject: Re: [DNSOP] DNSOP Call for Adoption - draft-west-let-localhost-be-localhost
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 06 Sep 2017 17:12:46 -0000

On Wed, Sep 6, 2017 at 10:35 AM, Ted Lemon <mellon@fugue.com> wrote:
> On Sep 6, 2017, at 10:33 AM, tjw ietf <tjw.ietf@gmail.com> wrote:
>
> Thanks.  The document still waffles, but it 'waffles less' than it did
> initially.  But Mike is committed to working that and any other issue which
> may arise.
>
>
> The question I really have is not whether Mike is willing—he's stated that
> he is.   It's whether the working group is willing, since returning NXDOMAIN
> is an actual change in behavior from the original specification in RFC 6761,
> and will likely result in some breakage, since it can safely be assumed that
> some stacks are currently following the RFC6761 advice.
>

Actually, I suspect that the breakage will be fairly minimal -- Google
Public DNS appears to have been returning NXDOMAIN since launch:
dig +nocmd +nostats localhost @8.8.8.8
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NXDOMAIN, id: 55075
;; flags: qr rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 0

;; QUESTION SECTION:
;localhost. IN A

;; AUTHORITY SECTION:
. 14208 IN SOA a.root-servers.net. nstld.verisign-grs.com. 2017090502
1800 900 604800 86400


and Verisign returns NOERROR (probably also since launch):
dig +nocmd +nostats localhost @64.6.64.6
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 44657
;; flags: qr aa rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 0

;; QUESTION SECTION:
;localhost. IN A

;; ANSWER SECTION:
localhost. 10800 IN A 127.0.0.1


This doesn't seem to have caused any breakage - or, at least, we
haven't heard of any, and apparently basically no-one had noticed a
difference :-)

W
>
>
>
> _______________________________________________
> DNSOP mailing list
> DNSOP@ietf.org
> https://www.ietf.org/mailman/listinfo/dnsop
>



-- 
I don't think the execution is relevant when it was obviously a bad
idea in the first place.
This is like putting rabid weasels in your pants, and later expressing
regret at having chosen those particular rabid weasels and that pair
of pants.
   ---maf