Re: [DNSOP] Minutes for 23 April 2020 Interim

Dmitry Belyavsky <beldmit@gmail.com> Tue, 28 April 2020 13:44 UTC

Return-Path: <beldmit@gmail.com>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 115713A1548 for <dnsop@ietfa.amsl.com>; Tue, 28 Apr 2020 06:44:27 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.097
X-Spam-Level:
X-Spam-Status: No, score=-2.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id NEWrqv8oZBEG for <dnsop@ietfa.amsl.com>; Tue, 28 Apr 2020 06:44:25 -0700 (PDT)
Received: from mail-ua1-x934.google.com (mail-ua1-x934.google.com [IPv6:2607:f8b0:4864:20::934]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 50B8F3A0A79 for <dnsop@ietf.org>; Tue, 28 Apr 2020 06:44:25 -0700 (PDT)
Received: by mail-ua1-x934.google.com with SMTP id 36so17247402uaf.9 for <dnsop@ietf.org>; Tue, 28 Apr 2020 06:44:25 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=7V5Sipq3BVoSk40pHDEQfjVXiGTsjJ8jpaw8jceQeWA=; b=NKX/5T5usM9T8ZD3xyUXeaGySCRBuHEJrqber+yWYTRxNzUq/z257xdTeetb5sCkKU WbKwG1r2JLVMdnBS8hQ+65bxgoLcNvf5zxRwBOf8nJbZ1OuuNDeu5VMPvdXI0g+MYQXu 7oxCQn6BvIiyaPCedJTj9IlRroTb9vouAY2g2LoOW/oqDHbjFa+3xX62Kowb/gwKecFV uGP2G8lWJtkx1owDEOp+bkKuQEL59VXkydb4H9uerdbsU3vBkUBVnpFVYGolvsyVD7wg eipggRdN7gW8xp+4mG0a6NDkLfeBickgCrgwnDqd/4XCRKI4GiIA+RQOKy+IggJ0efsi VgRw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=7V5Sipq3BVoSk40pHDEQfjVXiGTsjJ8jpaw8jceQeWA=; b=mwRUZz9YFj6rtqmnXAWZW4xRInEvAOV4yd9h+xMdaR45xa6RrxrHSDynH+oTPS6MoH jR/dDxSKjY4tdg59wOVK9fQJszJCevf2Gw7ZXbCUVpZAfku27ar2t87IITR+w6S1bZHq tCi7g80Kv9o3s0CxfT43vf+pREBzNbWqSXQ/WBV1m+wGMkb6v1RXC1buymKQ4ER+hpjx UUV40ZRAGjlAaFCjk2Wr5JJ2Eu3DLWA6Yty5HhhkjcrC1FgrEJzfiuaDyhxDyoTcAnzB i5L2ykWgXGDQ1PEV5JhIxaDDTu2wnpV6RixNa9EX1dQ9qLuXqw6jHp3H/MpmS5Nx15RI sewQ==
X-Gm-Message-State: AGi0PubtrRMCubcelG95Txo/KPKo+Rk64f+WnFPCaMHjzDAvJ8JGDTOh sqpTYFIDADvKI331JGg9DOB48jPmG08S7copAD4=
X-Google-Smtp-Source: APiQypKXUSAbYy3tli1GYbPlxQ7uNjm5E8qhmAApSJh8mzEC+UGrF3mp9bAFXp1Xv2r7uU2ScttBztI4BC/eCjY2cPs=
X-Received: by 2002:ab0:2ea9:: with SMTP id y9mr21012692uay.116.1588081462236; Tue, 28 Apr 2020 06:44:22 -0700 (PDT)
MIME-Version: 1.0
References: <CADyWQ+HUBAfExtZsgNgR8D78_yj3oX13hmCn3rzKYfc28y9p4Q@mail.gmail.com> <alpine.LRH.2.21.2004262045310.20651@bofh.nohats.ca>
In-Reply-To: <alpine.LRH.2.21.2004262045310.20651@bofh.nohats.ca>
From: Dmitry Belyavsky <beldmit@gmail.com>
Date: Tue, 28 Apr 2020 16:44:11 +0300
Message-ID: <CADqLbzKRW9z6wegfrOAaFHQAAoRCupVQgcsfrFoif8tBVMbM9g@mail.gmail.com>
To: Paul Wouters <paul@nohats.ca>
Cc: Tim Wicinski <tjw.ietf@gmail.com>, dnsop <dnsop@ietf.org>
Content-Type: multipart/alternative; boundary="0000000000006e5b4b05a45a07fa"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/olQnrPkoXulJTyZ84DwrnUqT0pk>
Subject: Re: [DNSOP] Minutes for 23 April 2020 Interim
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 28 Apr 2020 13:44:27 -0000

Dear Paul,

On Mon, Apr 27, 2020 at 3:51 AM Paul Wouters <paul@nohats.ca> wrote:

> On Thu, 23 Apr 2020, Tim Wicinski wrote:
>
> > We've uploaded the minutes from today's session
>
> Thanks for the minutes. One comment on the GOST comment from Jim:
>
>
>     Jim: Supports work
>          Wants references to old ones to be deprecated
>
>
> Note that RFC-8624 already made algorithm 12 (ECC-GOST) a "MUST NOT"
> for signing and a "MAY" for validation.
>
> I agree that for 8624bis, the MAY should become a MUST NOT. Ideally
> after we have the new GOST DNSKEY algorithm. The justification is that
> this algorithm has been obsolete for a while now, and there is no real
> deployment of it. As far as I know, there were only two domains in .ru
> that used it, mostly for testing? Maybe Viktor, Dmitry or Stanislav
> could confirm this.
>

There were more than 2 domains :)

I see some elements of a vicious circle there.

Lack of support of GOST in DNSSEC software causes a lack of popularity even
in Russia.
So now the standard and its implementation were done simultaneously.

-- 
SY, Dmitry Belyavsky