Re: [DNSOP] RFC2317 Question: Resolving cname delegation

Hector Santos <hsantos@isdg.net> Thu, 31 August 2017 12:56 UTC

Return-Path: <hsantos@isdg.net>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id BA8DF132D90 for <dnsop@ietfa.amsl.com>; Thu, 31 Aug 2017 05:56:32 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level:
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=isdg.net header.b=ExIn3Hen; dkim=pass (1024-bit key) header.d=beta.winserver.com header.b=0J8RvyX2
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id B6LKcSEQ3sFh for <dnsop@ietfa.amsl.com>; Thu, 31 Aug 2017 05:56:30 -0700 (PDT)
Received: from secure.winserver.com (secure.winserver.com [76.245.57.69]) by ietfa.amsl.com (Postfix) with ESMTP id 6A311132D87 for <dnsop@ietf.org>; Thu, 31 Aug 2017 05:56:30 -0700 (PDT)
DKIM-Signature: v=1; d=isdg.net; s=tms1; a=rsa-sha1; c=simple/relaxed; l=703; t=1504184181; atps=ietf.org; atpsh=sha1; h=Received:Received:Received:Received:Message-ID:Date:From: Organization:To:Subject:List-ID; bh=M5iMCUAbHNY/1sn6hEnlIDxWpUY=; b=ExIn3HenO1L00tI2BxPffsQqE9POtMjW3etxg1ZD6WBUgDDE+HqSNK6eHC1KL3 Ux3YJYaimJLqCpwgMR8ZCcBDBBRsGRqlZqyZQuwiFV+xHnVqYHOi3iTCnRxgF65R IiZ5Bo+oc/DXjgT45TYFY+GuieH/ddf0X+DyaXN+pNGr8=
Received: by winserver.com (Wildcat! SMTP Router v7.0.454.6) for dnsop@ietf.org; Thu, 31 Aug 2017 08:56:21 -0400
Authentication-Results: dkim.winserver.com; dkim=pass header.d=beta.winserver.com header.s=tms1 header.i=beta.winserver.com; adsp=pass policy=all author.d=isdg.net asl.d=beta.winserver.com;
Received: from beta.winserver.com ([76.245.57.74]) by winserver.com (Wildcat! SMTP v7.0.454.6) with ESMTP id 4248023375.75665.5616; Thu, 31 Aug 2017 08:56:21 -0400
DKIM-Signature: v=1; d=beta.winserver.com; s=tms1; a=rsa-sha256; c=simple/relaxed; l=703; t=1504184181; h=Received:Received: Message-ID:Date:From:Organization:To:Subject:List-ID; bh=A3sZGP3 TRsRhhMFCUgxujGVH2gdj3kXUHPJtqUVoWOY=; b=0J8RvyX2Mspc3GLiOSrsWb/ vDwaU9j/o8csfztDzNJIPe6aml16BR/xGMN/z+9mVKm3bXSkOnEbSlgxYNaAiWRV zhZ1fEZgucmmKHdpQemCWsgt3+1Mpitkcc//pbKMiaAe3Vb9gECxxf6XHXYSPIfk Vmf3XfPQiaj/5AFIAuyA=
Received: by beta.winserver.com (Wildcat! SMTP Router v7.0.454.6) for dnsop@ietf.org; Thu, 31 Aug 2017 08:56:21 -0400
Received: from [192.168.1.68] ([99.121.5.8]) by beta.winserver.com (Wildcat! SMTP v7.0.454.6) with ESMTP id 1131998750.9.31496; Thu, 31 Aug 2017 08:56:20 -0400
Message-ID: <59A80778.3020508@isdg.net>
Date: Thu, 31 Aug 2017 08:56:24 -0400
From: Hector Santos <hsantos@isdg.net>
Organization: Santronics Software, Inc.
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.8.1
MIME-Version: 1.0
To: dnsop@ietf.org
References: <599EF4F2.6070509@isdg.net> <alpine.DEB.2.11.1708302050450.2628@grey.csi.cam.ac.uk>
In-Reply-To: <alpine.DEB.2.11.1708302050450.2628@grey.csi.cam.ac.uk>
Content-Type: text/plain; charset="UTF-8"; format="flowed"
Content-Transfer-Encoding: 7bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/vkdidSJmbcb3ZWqGXxaONw-SJt8>
Subject: Re: [DNSOP] RFC2317 Question: Resolving cname delegation
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 31 Aug 2017 12:56:33 -0000

On 8/30/2017 3:53 PM, Tony Finch wrote:
> Hector Santos <hsantos@isdg.net> wrote:
>>
>> Not expecting this in my DNS resolver code, I modified the resolver to take
>> the CNAMEs into account and return the host names instead.  Was this the
>> correct thing to do, thus providing the same results regardless of the query
>> location?
>
> Yes.
>
> You should also make sure your response parser isn't tripped up by DNAME
> records (you can safely skip them).

Ok, I'm going to explore DNAME types (at least it to my resolver).

> See also https://tools.ietf.org/html/draft-fanf-dnsop-rfc2317bis which
> sadly ran out of steam and stalled...

Interesting. Thanks for the note.

-- 
HLS