Re: [DNSOP] draft-ietf-dnsop-refuse-any: points from Richard Gibson

Joe Abley <jabley@hopcount.ca> Wed, 26 July 2017 19:01 UTC

Return-Path: <jabley@hopcount.ca>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DE747131E6B for <dnsop@ietfa.amsl.com>; Wed, 26 Jul 2017 12:01:21 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.791
X-Spam-Level:
X-Spam-Status: No, score=-1.791 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, RP_MATCHES_RCVD=-0.001, T_DKIM_INVALID=0.01] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=fail (1024-bit key) reason="fail (OpenSSL error: data too large for key size)" header.d=automagic.org
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id J047aOsExrvy for <dnsop@ietfa.amsl.com>; Wed, 26 Jul 2017 12:01:20 -0700 (PDT)
Received: from mail.hopcount.ca (mail.hopcount.ca [67.215.197.156]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 110BF131E6A for <dnsop@ietf.org>; Wed, 26 Jul 2017 12:01:07 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=simple/simple; d=automagic.org ; s=hopcount; h=To:References:Message-Id:Content-Transfer-Encoding:Cc:Date: In-Reply-To:From:Subject:Mime-Version:Content-Type:Sender:Reply-To:Content-ID :Content-Description:Resent-Date:Resent-From:Resent-Sender:Resent-To: Resent-Cc:Resent-Message-ID:List-Id:List-Help:List-Unsubscribe:List-Subscribe :List-Post:List-Owner:List-Archive; bh=oe+g1EqwtS3C2B/8S3c2ngtBF6Swu+1+0FJ0YsoSs4s=; b=DxuGg8iKdEs5C9lXd3xKeBTLOB 3HPIPOEedLNWNg9v0nP2P2nj+ZOjpFZ17KtVQjBFA7Mjbkh3lShKErrEcBngD7mVegMT5+3s9Y54D WfjBxFrNYaIQ1EayOZxbfP3KLIlkI/xhkwaHs19e27o7qb75PHuom0LANNykfRKfG0dVRNY1AzzpP wXOPeJASHZimDRqFpybO+Cqg19C05XyiPQpbDjwuysme+yDe8UJmqkfGyOF9WATFuMzd1Xgq3RGIY GNl0ctPREmil6YrHgYQ2FeYahhwb1B3EiPDikOPS/JeXxnkUHbhIRw161Q3KSUUtnW6KMOPglwVw4 fVzfUF3A==;
Received: from [192.0.145.35] (helo=[199.212.92.9]) by mail.hopcount.ca with esmtpsa (TLSv1.2:ECDHE-RSA-AES256-GCM-SHA384:256) (Exim 4.89 (FreeBSD)) (envelope-from <jabley@hopcount.ca>) id 1daRYK-000NZF-5N; Wed, 26 Jul 2017 19:01:02 +0000
Content-Type: text/plain; charset="us-ascii"
Mime-Version: 1.0 (Mac OS X Mail 10.3 \(3273\))
From: Joe Abley <jabley@hopcount.ca>
In-Reply-To: <CAC94RYYipYaezJDCb+bGHD3aWoVZuAoqY5kYOPjOovy5o7LKhQ@mail.gmail.com>
Date: Wed, 26 Jul 2017 15:00:58 -0400
Cc: dnsop <dnsop@ietf.org>
Content-Transfer-Encoding: quoted-printable
Message-Id: <A5AFEFDE-D763-498D-89E4-52ED01C3DA98@hopcount.ca>
References: <083C34A2-92B9-4A9F-A331-9C38E22417C7@hopcount.ca> <CAC94RYYYrb8AXFhwqW89jh79QvPOTtrK4esupL8YbFToUP3+Aw@mail.gmail.com> <2E157D56-EEFB-475A-B122-F85C142E3010@hopcount.ca> <CAC94RYYipYaezJDCb+bGHD3aWoVZuAoqY5kYOPjOovy5o7LKhQ@mail.gmail.com>
To: Richard Gibson <rgibson@dyn.com>
X-Mailer: Apple Mail (2.3273)
X-SA-Exim-Connect-IP: 192.0.145.35
X-SA-Exim-Mail-From: jabley@hopcount.ca
X-SA-Exim-Scanned: No (on mail.hopcount.ca); SAEximRunCond expanded to false
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/tKmicqs7kDqbnt-V71cvSKsdXtg>
Subject: Re: [DNSOP] draft-ietf-dnsop-refuse-any: points from Richard Gibson
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 26 Jul 2017 19:01:22 -0000

On 26 Jul 2017, at 14:50, Richard Gibson <rgibson@dyn.com> wrote:

> Yes, color me corrected on vocabulary but unconvinced on interference... those slides seem to mostly demonstrate noncompliance by name servers theirselves with respect to EDNS data in queries, whereas the data I'm suggesting would only appear in responses.

My recollection was that the machinery Mark was using wouldn't distinguish between problems caused by nameservers and problems introduced by middleware, but it *was* a while ago. Anyway, I'm not arguing so much as trying to explain myself, and...

> That works. And I'm all out, so you're safe from me.

... thanks for that.

> Strikethrough and bold, eh? OK. :-) Suggestions are good, many thanks!
> 
> Ha! I'll use Markdown conventions in the future.

That would be a significant sideprovement.


Joe "text/plain" Abley