Re: [DNSOP] Interim DNSOP WG meeting on Special Use Names: some reading material

Mark Andrews <marka@isc.org> Fri, 08 May 2015 20:36 UTC

Return-Path: <marka@isc.org>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 04EE71A90F8 for <dnsop@ietfa.amsl.com>; Fri, 8 May 2015 13:36:00 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.911
X-Spam-Level:
X-Spam-Status: No, score=-1.911 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id usW6Bk17-cFH for <dnsop@ietfa.amsl.com>; Fri, 8 May 2015 13:35:58 -0700 (PDT)
Received: from mx.ams1.isc.org (mx.ams1.isc.org [IPv6:2001:500:60::65]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id B0F471A8923 for <dnsop@ietf.org>; Fri, 8 May 2015 13:35:58 -0700 (PDT)
Received: from zmx1.isc.org (zmx1.isc.org [149.20.0.20]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx.ams1.isc.org (Postfix) with ESMTPS id EC89A1FCABF; Fri, 8 May 2015 20:35:55 +0000 (UTC)
Received: from zmx1.isc.org (localhost [127.0.0.1]) by zmx1.isc.org (Postfix) with ESMTPS id 93B9416004E; Fri, 8 May 2015 20:36:10 +0000 (UTC)
Received: from localhost (localhost [127.0.0.1]) by zmx1.isc.org (Postfix) with ESMTP id 33AC416008A; Fri, 8 May 2015 20:36:10 +0000 (UTC)
Received: from zmx1.isc.org ([127.0.0.1]) by localhost (zmx1.isc.org [127.0.0.1]) (amavisd-new, port 10026) with ESMTP id GxkDf1_EiO9q; Fri, 8 May 2015 20:36:10 +0000 (UTC)
Received: from rock.dv.isc.org (c122-106-161-187.carlnfd1.nsw.optusnet.com.au [122.106.161.187]) by zmx1.isc.org (Postfix) with ESMTPSA id AD3F116004E; Fri, 8 May 2015 20:36:09 +0000 (UTC)
Received: from rock.dv.isc.org (localhost [IPv6:::1]) by rock.dv.isc.org (Postfix) with ESMTP id ACC372DF52BA; Sat, 9 May 2015 06:35:59 +1000 (EST)
To: John Levine <johnl@taugh.com>
From: Mark Andrews <marka@isc.org>
References: <20150508194223.55320.qmail@ary.lan>
In-reply-to: Your message of "08 May 2015 19:42:23 +0000." <20150508194223.55320.qmail@ary.lan>
Date: Sat, 09 May 2015 06:35:58 +1000
Message-Id: <20150508203559.ACC372DF52BA@rock.dv.isc.org>
Archived-At: <http://mailarchive.ietf.org/arch/msg/dnsop/y_Siw4xd0DK9bqWtJI4fZj6M-58>
Cc: dnsop@ietf.org
Subject: Re: [DNSOP] Interim DNSOP WG meeting on Special Use Names: some reading material
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 08 May 2015 20:36:00 -0000

In message <20150508194223.55320.qmail@ary.lan>, "John Levine" writes:
> >The justification for removing home/corp/mail primarily appears to be "becau
> se they showed up
> >'a lot' at the root servers". Without characterizing this a bit better, it s
> eems to me it would
> >be trivial to set up situations to move pretty much any undelegated name to 
> the "Special Names"
> >registry -- just fire up a few thousand zombies to query names in the TLD yo
> u want removed
> >using random source addresses.
> 
> Hmmn.  Is this a serious accusation, or is this just channelling the
> usual domainers whinging about their business plans?  
> 
> Does anyone seriously argue that those domains aren't widely used in
> private networks, and that nominally private DNS names leak all the
> time?
> 
> R's,
> John

I'm not, but name leaking is different to name use.  I suspect "mail"
ends up being qualified whereas "home" and "corp" are actually used as
private tlds.  This difference requires different handling.

-- 
Mark Andrews, ISC
1 Seymour St., Dundas Valley, NSW 2117, Australia
PHONE: +61 2 9871 4742                 INTERNET: marka@isc.org