Re: [DNSOP] KSK-Sentinal: Once more down the naming rathole.

"Wessels, Duane" <dwessels@verisign.com> Wed, 21 February 2018 19:59 UTC

Return-Path: <dwessels@verisign.com>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7586712D94A for <dnsop@ietfa.amsl.com>; Wed, 21 Feb 2018 11:59:22 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.311
X-Spam-Level:
X-Spam-Status: No, score=-4.311 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=verisign.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id PP73bAt3whwf for <dnsop@ietfa.amsl.com>; Wed, 21 Feb 2018 11:59:21 -0800 (PST)
Received: from mail1.verisign.com (mail1.verisign.com [72.13.63.30]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 052E91241F5 for <dnsop@ietf.org>; Wed, 21 Feb 2018 11:59:20 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=verisign.com; l=358; q=dns/txt; s=VRSN; t=1519243161; h=from:to:cc:date:message-id:references:in-reply-to: content-id:content-transfer-encoding:mime-version:subject; bh=V2moox+8sOntOYoYAM5PCst97a7BdqIuTpZ94S0AL4o=; b=L1U5D8zWabytT4YxPm500r8SOV8LsmEpKlGioWVfP8DN1El7qzazrW6H NcMOVSF0kM0qAYXR+UyFxuowqfiaa6+NH2JYQSZEhC+PXwGiV+qrG6DW4 a+BkqzOj66+NqB9DrMyD0cX3sIDRHiLzK7wb4hCbLcY5gWOKLYm15CZXP cU5/rvHO+/0GBxg+j7U9p8Zo819pkfpWfIy3iSsbZ0HhZOcgLqFHyhtdu k7Ov0bSm/4z220yv6AqkVpwZ8OtTO5kxat55IEQ9NsEBKm6bBI4twcU1i rttHMV6Gdzp7iryb+WiYHbRtD4JQCDc5jC7hhu0dHL7mqbgueyfZtbmou g==;
X-IronPort-AV: E=Sophos;i="5.47,375,1515456000"; d="scan'208";a="5952510"
IronPort-PHdr: 9a23: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
X-IPAS-Result: A2EfAQAgz41a//SZrQpdGQEBAQEBAQEBAQEBAQcBAQEBAYVNCp19EYEGmGAKhTQCg08VAQIBAQEBAQECAQKBEII4JAGCRwEBAQECATo/BQsCAQgNAQoeEDIlAgQOBYobrSmFAIN6ghMBAQEBAQEEAQEBAQEBAQEBAQEdhRGDf4IPgwWFI4NIgjQFklaRZQMGApgSAZI9l3kCBAsCGQGBPDWBdXAVZAGCGIJUHIIGeIt7gRkBAQE
Received: from BRN1WNEXCHM01.vcorp.ad.vrsn.com (brn1wnexchm01 [10.173.152.255]) by brn1lxmailout01.verisign.com (8.13.8/8.13.8) with ESMTP id w1LJxJrG024159 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=FAIL); Wed, 21 Feb 2018 14:59:19 -0500
Received: from BRN1WNEXMBX02.vcorp.ad.vrsn.com ([::1]) by BRN1WNEXCHM01.vcorp.ad.vrsn.com ([::1]) with mapi id 14.03.0301.000; Wed, 21 Feb 2018 14:59:18 -0500
From: "Wessels, Duane" <dwessels@verisign.com>
To: Joe Abley <jabley@hopcount.ca>
CC: dnsop <dnsop@ietf.org>
Thread-Topic: [EXTERNAL] Re: [DNSOP] KSK-Sentinal: Once more down the naming rathole.
Thread-Index: AQHTq02sjI5adEN1BUKTFmB5jHWDHKOvmh6A
Date: Wed, 21 Feb 2018 19:59:17 +0000
Message-ID: <41098C27-BA7F-4B47-9C97-6536CD353665@verisign.com>
References: <CAHw9_iLqEerV-So7704qu7A2mbD6YQbzdF8A3FEGtUPOE+6NWw@mail.gmail.com> <DC8845C9-6329-4A02-97F9-45C991726F71@vpnc.org> <CA+nkc8D6zbVMJmntTtEub0iLSB=3Qf8khMu6VibOGrDM55oXpA@mail.gmail.com> <CAJhMdTPLdVVFCdRTzr9B3sZKGcf0D2pw6C80+V18GqX_=K-2ag@mail.gmail.com>
In-Reply-To: <CAJhMdTPLdVVFCdRTzr9B3sZKGcf0D2pw6C80+V18GqX_=K-2ag@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.170.148.18]
Content-Type: text/plain; charset="us-ascii"
Content-ID: <305A184662AE764C90D96BA3AAA2693E@verisign.com>
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/rhfzhPl5K6HTYMXe4FckB43GUi4>
Subject: Re: [DNSOP] KSK-Sentinal: Once more down the naming rathole.
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 21 Feb 2018 19:59:22 -0000

> On Feb 21, 2018, at 2:53 PM, Joe Abley <jabley@hopcount.ca> wrote:
> 
> Why did 8145 specify hex? I don't remember the discussion.

I argued for hex and leading zeroes because I thought it might be beneficial to have some structure in the query name, in case there were false signals from name collisions, etc.  ie, _ta-0001 vs _ta-1.

DW