Re: [DNSOP] [as112-ops] Future of "Using DNAME in the DNS root zone for sinking of special-use TLDs" ?

Aleksi Suhonen <as112-ops@trex.fi> Tue, 18 October 2016 12:00 UTC

Return-Path: <as112-ops@trex.fi>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 653B6129557 for <dnsop@ietfa.amsl.com>; Tue, 18 Oct 2016 05:00:40 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.331
X-Spam-Level:
X-Spam-Status: No, score=-2.331 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RP_MATCHES_RCVD=-0.431] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 1MMkehNmJUEp for <dnsop@ietfa.amsl.com>; Tue, 18 Oct 2016 05:00:36 -0700 (PDT)
Received: from mqueue1.axu.fi (mqueue1.mail.trex.fi [195.140.195.102]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8FE151295A7 for <dnsop@ietf.org>; Tue, 18 Oct 2016 05:00:33 -0700 (PDT)
Received: from [IPv6:2001:708:310:52:4ecc:6aff:fe54:6f9a] (kokki.sec.rd.tut.fi [IPv6:2001:708:310:52:4ecc:6aff:fe54:6f9a]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (Client CN "halli.sec.rd.tut.fi", Issuer "Axu TM CA 2025" (verified OK)) by mqueue1.axu.fi (Postfix) with ESMTPS id C9DFA38EC; Tue, 18 Oct 2016 12:00:28 +0000 (UTC)
To: Stephane Bortzmeyer <bortzmeyer@nic.fr>, Paul Wouters <paul@nohats.ca>
References: <20161014133135.2n3wuh2n5sb3jqt7@nic.fr> <alpine.LRH.2.20.1610141002540.16905@bofh.nohats.ca> <20161014140905.saqke7xyferwtrig@nic.fr>
From: Aleksi Suhonen <as112-ops@trex.fi>
Organization: TREX Regional Exchanges Oy
Message-ID: <3fe43efc-0764-710a-e354-3a807c767806@trex.fi>
Date: Tue, 18 Oct 2016 15:00:28 +0300
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:45.0) Gecko/20100101 Icedove/45.4.0
MIME-Version: 1.0
In-Reply-To: <20161014140905.saqke7xyferwtrig@nic.fr>
Content-Type: text/plain; charset="windows-1252"
Content-Transfer-Encoding: 7bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/mItwnghVu-kFvSMaR5Glnma9Po0>
X-Mailman-Approved-At: Wed, 19 Oct 2016 00:58:40 -0700
Cc: dnsop@ietf.org, as112-ops@dns-oarc.net
Subject: Re: [DNSOP] [as112-ops] Future of "Using DNAME in the DNS root zone for sinking of special-use TLDs" ?
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 18 Oct 2016 12:00:40 -0000

On 10/14/2016 05:09 PM, Stephane Bortzmeyer wrote:
> On Fri, Oct 14, 2016 at 10:04:21AM -0400,
>  Paul Wouters <paul@nohats.ca> wrote 
>  a message of 19 lines which said:
> 
>> But by adding delegations in the root to AS112, aren't we making it
>> more likely that the queries leak further onto the net?
> 
> That's precisely the point described in section 6, second paragraph.

For .local, I can see the point of sinking it as locally as possible.
But it does not make sense for all DNS software and all resolver admins
to try to keep track of all the zones that need to be sinked.

I don't remember if Teredo address space (0.0.0.0.1.0.0.2.ip6.arpa.) was
in the proposal, but it's a good example anyhow, isn't it?

-- 
	+358 44 9756548 / http://www.trex.fi/
	Aleksi Suhonen / TREX Regional Exchanges Oy

	You say "potato", I say "closest-exit."