Re: [dnssd] Review of draft-ietf-dnssd-srp-05

Ted Lemon <mellon@fugue.com> Thu, 19 November 2020 10:43 UTC

Return-Path: <mellon@fugue.com>
X-Original-To: dnssd@ietfa.amsl.com
Delivered-To: dnssd@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 12AB73A13E9 for <dnssd@ietfa.amsl.com>; Thu, 19 Nov 2020 02:43:16 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.886
X-Spam-Level:
X-Spam-Status: No, score=-1.886 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, NO_DNS_FOR_FROM=0.001, SPF_HELO_NONE=0.001, T_SPF_TEMPERROR=0.01, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=fugue-com.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id WTVYddVrV_Kn for <dnssd@ietfa.amsl.com>; Thu, 19 Nov 2020 02:43:14 -0800 (PST)
Received: from mail-il1-x12c.google.com (mail-il1-x12c.google.com [IPv6:2607:f8b0:4864:20::12c]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 652AB3A13E8 for <dnssd@ietf.org>; Thu, 19 Nov 2020 02:43:14 -0800 (PST)
Received: by mail-il1-x12c.google.com with SMTP id h6so4889432ilj.8 for <dnssd@ietf.org>; Thu, 19 Nov 2020 02:43:13 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=fugue-com.20150623.gappssmtp.com; s=20150623; h=from:message-id:mime-version:subject:date:in-reply-to:cc:to :references; bh=yeJ/41RCScgeFNBLja7zZ6m6HR4XgHC+ULNYAHEyi0c=; b=INpqMEJhJ1zy3TeuM/t3AzFWiLrM7Fs78dKOsLGzjhonMHMmFgFvceomz05a1OM9wN uLVwELWyekad9sh9jgAiKIo7VcCvuhGJjQr9Um5NnanKhHeu/FMAJFtMvRuO4h9yfMa2 iLpXhsdnAqE6Gm9jXDLgIGjEZU9msUA/RYS9AI1vFmxswnGiSRMxMaoEHZ8sSX4u+McP ptMtzxZ2V+iVtUuI0ZYGGkPaqx5j3A01flvtzufqxSCuHMcMp6quj9zgQHwdG+Xh0mrK cxD4YMMajAEFhgsyKFk9rtmScgNwn/+yKEPlTsnGMBxHKLLnrh+7ogesk7q4cRz3Ek5m AsFw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:message-id:mime-version:subject:date :in-reply-to:cc:to:references; bh=yeJ/41RCScgeFNBLja7zZ6m6HR4XgHC+ULNYAHEyi0c=; b=q3TbLzf3BEzP5PvXJbcUBEL+KBzJ/97UxjU/zvxA2Ogy0aHDQdOujZwOq+yMvIc9B0 SqPGu+AYSGszI+iE17FoA4ViPmCcCGCXV15HgLQ3nL0mC4y8vGGGZQHICsA0zIDD9vMX mhZuqVwgsBA3cxAhQwoovPAgNGJvlWA5IEsWYd2R51987yThEEdvvM7Ik+zvdP805fSz llei78SAWQzAF+jLfdR7wG+WLr/G3+42w43ACl/Cb+CTaGbDT35ylmk/nCqRm2goleMX TFzGl2dxKQUFOa6MiKgg9fW5gAcwhfA2n/7lh9nE/iC6a0DiQ0XSZgjgsh7gGi7VVBuQ OFWg==
X-Gm-Message-State: AOAM53173JbssMDr6Do4L517O1JPKzpfPmkWm0e3w62cZkqeqvdDIMXA CY6e17SMuE9gez6XUJe5VkHvGQ==
X-Google-Smtp-Source: ABdhPJyp+EzMbNfGhQIS910yKzIvkJWaQSobi0wjGJqk+V/7DlePef1AmSBW1Gws4+ChcYjEo5OGfQ==
X-Received: by 2002:a92:dc02:: with SMTP id t2mr21173560iln.82.1605782593221; Thu, 19 Nov 2020 02:43:13 -0800 (PST)
Received: from mithrandir.lan (c-24-91-177-160.hsd1.nh.comcast.net. [24.91.177.160]) by smtp.gmail.com with ESMTPSA id i14sm17502208ilb.2.2020.11.19.02.43.12 (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Thu, 19 Nov 2020 02:43:12 -0800 (PST)
From: Ted Lemon <mellon@fugue.com>
Message-Id: <693293B1-04A9-4F6C-AA0A-BE5F1A099BD4@fugue.com>
Content-Type: multipart/alternative; boundary="Apple-Mail=_CFFE8DC4-F4C4-417D-98A6-A77BBC64A594"
Mime-Version: 1.0 (Mac OS X Mail 14.0 \(3654.40.0.2.21\))
Date: Thu, 19 Nov 2020 05:43:11 -0500
In-Reply-To: <CABXuWKvQu7k+MSKq1svQSt=hFO3Hv39ARXCHUo+a2pmt9zdprA@mail.gmail.com>
Cc: dnssd@ietf.org
To: Manuel Amutio <mamutio@kirale.com>
References: <CABXuWKtbNjwtVtiRjQwFrF=1WJ6fEUpQaUZz7iNkL4TG260MoA@mail.gmail.com> <843154D5-2D1A-4CD6-9922-64B01FA2DC1A@fugue.com> <CABXuWKvQu7k+MSKq1svQSt=hFO3Hv39ARXCHUo+a2pmt9zdprA@mail.gmail.com>
X-Mailer: Apple Mail (2.3654.40.0.2.21)
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnssd/Mw7Ll9wCSCxGtlPRlOSSGSHbSrc>
Subject: Re: [dnssd] Review of draft-ietf-dnssd-srp-05
X-BeenThere: dnssd@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Discussion of extensions to DNS-based service discovery for routed networks." <dnssd.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnssd>, <mailto:dnssd-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnssd/>
List-Post: <mailto:dnssd@ietf.org>
List-Help: <mailto:dnssd-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnssd>, <mailto:dnssd-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 19 Nov 2020 10:43:16 -0000

On Nov 19, 2020, at 5:14 AM, Manuel Amutio <mamutio@kirale.com> wrote:
> Regarding my first doubt, I still fail to understand how a device which has lost its security material, for instance after a factory reset, could then claim its right to dispose (remove or update) of the service that was created before.

It can’t, and the document doesn’t suggest that it can.

The expectation is that this would be done when the ownership of the object changes, so that it would be deployed in a different context where the name it claimed would not be used.