Re: [Doh] DoH

Adam Roach <adam@nostrum.com> Thu, 28 March 2019 18:11 UTC

Return-Path: <adam@nostrum.com>
X-Original-To: doh@ietfa.amsl.com
Delivered-To: doh@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 346B012037B for <doh@ietfa.amsl.com>; Thu, 28 Mar 2019 11:11:33 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.978
X-Spam-Level:
X-Spam-Status: No, score=-1.978 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, T_SPF_HELO_PERMERROR=0.01, T_SPF_PERMERROR=0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=nostrum.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id b33lXqVjc46c for <doh@ietfa.amsl.com>; Thu, 28 Mar 2019 11:11:30 -0700 (PDT)
Received: from nostrum.com (raven-v6.nostrum.com [IPv6:2001:470:d:1130::1]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 54BFD120322 for <doh@ietf.org>; Thu, 28 Mar 2019 11:11:30 -0700 (PDT)
Received: from dhcp-9796.meeting.ietf.org (dhcp-9796.meeting.ietf.org [31.133.151.150]) (authenticated bits=0) by nostrum.com (8.15.2/8.15.2) with ESMTPSA id x2SIBFv2072064 (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128 verify=NO); Thu, 28 Mar 2019 13:11:20 -0500 (CDT) (envelope-from adam@nostrum.com)
DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=nostrum.com; s=default; t=1553796684; bh=fI0gMT9/fZ36Mv+Z5n8jO4jq0ul8cG3WuI/Bj09gf+I=; h=Subject:To:Cc:References:From:Date:In-Reply-To; b=nsWayv2ICUV/SLwXCcx/TXDyvN8aHISwPBXmf8JjZaLuTgHOKkkJ+a958aTHeTEM0 VAcg4GUXgNpkncXjjg1f1PQtahR9vrPu9BrSLfOO11KfKqMgugbh97ebxblylWqg9j tvHB3jMP9qinFvPEOOdOG4kXGj41ZVzdaRzW0Tz8=
To: andrew.campling@bt.com, john@johncarr.eu, mcmanus@ducksong.com
Cc: paul.hoffman@icann.org, doh@ietf.org
References: <DB7PR03MB4698C510EC609C85725FC158C6590@DB7PR03MB4698.eurprd03.prod.outlook.com> <CAOdDvNpJqaemDTHcUtTQ7Xc1cq5OOFU91qq_h97j6Uv1RTHD7A@mail.gmail.com> <DB7PR03MB4698A645255E883C9CC07AC3C6590@DB7PR03MB4698.eurprd03.prod.outlook.com> <73a0935d-f80b-0e8d-eb89-cb35a473122c@nostrum.com> <826904ddc23941d5be4d8872c4f2737a@tpw09926dag11h.domain1.systemhost.net>
From: Adam Roach <adam@nostrum.com>
Message-ID: <2af82a6d-6887-ae36-4527-47e476829345@nostrum.com>
Date: Thu, 28 Mar 2019 19:11:14 +0100
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.13; rv:60.0) Gecko/20100101 Thunderbird/60.6.1
MIME-Version: 1.0
In-Reply-To: <826904ddc23941d5be4d8872c4f2737a@tpw09926dag11h.domain1.systemhost.net>
Content-Type: multipart/alternative; boundary="------------CE4C1FA68E292EE87A5254CD"
Content-Language: en-US
Archived-At: <https://mailarchive.ietf.org/arch/msg/doh/Sdv1pJ9IU5lJ-PwSBLQCgZL9h5k>
Subject: Re: [Doh] DoH
X-BeenThere: doh@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: DNS Over HTTPS <doh.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/doh>, <mailto:doh-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/doh/>
List-Post: <mailto:doh@ietf.org>
List-Help: <mailto:doh-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/doh>, <mailto:doh-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 28 Mar 2019 18:11:45 -0000

On 3/28/19 18:35, andrew.campling@bt.com wrote:
>
> ØFor the types of home networks you mention, which generally lack 
> professional and dedicated network administrators, DoH does not 
> inherently represent any significant change to the decade-old status 
> quo resulting from publicly-available DNS.
>
> I disagree, there is a fundamental change here.  If / when browsers 
> enable DoH by default...
>

Yes, and this pertains to product decisions rather than the DoH protocol 
itself. I tried to make this point in the third paragraph of my 
response. I apologize if that point was insufficiently clear.

/a