Re: [Doh] No truncation for DNS over HTTPS

Davey Song <songlinjian@gmail.com> Thu, 22 March 2018 15:30 UTC

Return-Path: <songlinjian@gmail.com>
X-Original-To: doh@ietfa.amsl.com
Delivered-To: doh@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 80638126E64 for <doh@ietfa.amsl.com>; Thu, 22 Mar 2018 08:30:17 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level:
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ZDuz2902iwzz for <doh@ietfa.amsl.com>; Thu, 22 Mar 2018 08:30:15 -0700 (PDT)
Received: from mail-vk0-x234.google.com (mail-vk0-x234.google.com [IPv6:2607:f8b0:400c:c05::234]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id B0A5E12D893 for <doh@ietf.org>; Thu, 22 Mar 2018 08:30:15 -0700 (PDT)
Received: by mail-vk0-x234.google.com with SMTP id k187so5451156vke.12 for <doh@ietf.org>; Thu, 22 Mar 2018 08:30:15 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=4rJ3iITF2fCHsKB2fhaREaWDmJwjlhv2SBdx+IIZAnI=; b=uC5e4bcILvp/6qoI3yOsFqznhdVVjI3Z+Btvge2kzIHfP2zUuTbLj25+QtpGCqsFwU Y9b+QkgqpRlroTD/xMJkP4zCQ9/5iAnW5ao2DMx2cJmez/9S4gqV1xgDsTV35bxerOgc QsUICJK5r48Os3pO3xAx3YdYo3S7EHvF5FJp2TDxFZRgKIh/SOpwTqWnvTLGWtD5Pk8p yNxdEL7oyUkRucn14gixEIhCXHmWzVC3T73dKBIiVAAS5c6eb/ZuXmq+pjTVDuYtMWyk xOLDT/NziJEcan7zwOVfgffoEdDKjv3veaagxId71wbNkZloL9Lb336AV3+jz4Z3/S7D YSwA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=4rJ3iITF2fCHsKB2fhaREaWDmJwjlhv2SBdx+IIZAnI=; b=k9hUoE8zNjnmfLEakJTBsTW7xepnPTfn6GiyY8qRJi7B3UoLhfo8N1GGM5kQh1F54I OVjHdQvXrbaFhfO/srLA5g+eIIY4Va5IKQ/jJvUwoMTrwYO41QpRGRkDbSEulbyWGIYb 7IzfclYTBpI93gDrbeRExesVHQpNL8LaaALF20SvrVKH8T7ul842nQrkKcfUe+P8AubI 44dul2HJinzG8s97enbXtV4wVLiZlSWBN0nMQwKvUtVQV85VrNd4D0YHloZzg6+z6wbe tJIBPv17sKwjR7N+VQ17yP3x0PwDwr1r3ojt4L4AbsR0ApaxRv+/yWdUwU2P3ogqLkas xDCQ==
X-Gm-Message-State: AElRT7Gxk+5836JognX7hkPSYH2sHzIoeVDK+sXGKNpTwLdA8FnDv5r6 0mHEctsyGQiD0UOCO3qja95BKYIj4WxjE1e+X5BzkA==
X-Google-Smtp-Source: AG47ELtLapH7l+1ttLkasvD3jp+zRPVUcsavNDIAaa4HquYNwD3dq6pO0QO2S9uRBHTnXOVnOmZ9pYXLZVCqwcWBj2c=
X-Received: by 10.31.50.13 with SMTP id y13mr16125564vky.85.1521732614657; Thu, 22 Mar 2018 08:30:14 -0700 (PDT)
MIME-Version: 1.0
References: <CAAObRXJDV5Oa_d_S12HT2jqBuO=-AHOuMH8eKrac3BZ2bDxixw@mail.gmail.com> <a8949b7b-5717-6d63-af70-984894e6a571@bellis.me.uk> <CAAObRXKTpo=xt_C=C1xhkeOFAV=B7_fq7r7nU24VE-7RpVqbBA@mail.gmail.com> <26c28a74-632d-4c9c-2a64-36711180bcaa@bellis.me.uk>
In-Reply-To: <26c28a74-632d-4c9c-2a64-36711180bcaa@bellis.me.uk>
From: Davey Song <songlinjian@gmail.com>
Date: Thu, 22 Mar 2018 15:30:04 +0000
Message-ID: <CAAObRXLAxGJGNLQWDF40obWaaKhpDu0DDn0O7qF8wJ4qQoiWSw@mail.gmail.com>
To: Ray Bellis <ray@bellis.me.uk>
Cc: doh@ietf.org
Content-Type: multipart/alternative; boundary="001a114405f0f09d57056801fba1"
Archived-At: <https://mailarchive.ietf.org/arch/msg/doh/1MLBv6j2FcQWhxIgQfEev7lPwfk>
Subject: Re: [Doh] No truncation for DNS over HTTPS
X-BeenThere: doh@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: DNS Over HTTPS <doh.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/doh>, <mailto:doh-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/doh/>
List-Post: <mailto:doh@ietf.org>
List-Help: <mailto:doh-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/doh>, <mailto:doh-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 22 Mar 2018 15:30:18 -0000

Ray Bellis <ray@bellis.me.uk> 于 2018年3月22日周四 23:02写道:

>
> IMHO you can't separate the two.
>
> The client shouldn't be able to tell the difference between a "native"
> DOH Server endpoint and one that's being proxied through some smart
> middleware to a DNS server that only speaks "normal" UDP and TCP
> wire-format queries.


 Fair enough

I believe that's consistent with what I wrote in my second paragraph:
>

Yes. I re-read your first comment. It is not a disagreement to my mail, but
an adding. Thanks.


> Look at who wrote that RFC :p
>


OK. You are the boss ; p

Davey

>