[domainrep] Third-Party Denial of Service in draft-kucherawy-repute-considerations

"Hollenbeck, Scott" <shollenbeck@verisign.com> Thu, 08 November 2012 16:37 UTC

Return-Path: <shollenbeck@verisign.com>
X-Original-To: domainrep@ietfa.amsl.com
Delivered-To: domainrep@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9F5C821F8856 for <domainrep@ietfa.amsl.com>; Thu, 8 Nov 2012 08:37:48 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.176
X-Spam-Level:
X-Spam-Status: No, score=-6.176 tagged_above=-999 required=5 tests=[AWL=0.423, BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 3TLIFgyXhIWc for <domainrep@ietfa.amsl.com>; Thu, 8 Nov 2012 08:37:48 -0800 (PST)
Received: from exprod6og108.obsmtp.com (exprod6og108.obsmtp.com [64.18.1.21]) by ietfa.amsl.com (Postfix) with ESMTP id C256921F8839 for <domainrep@ietf.org>; Thu, 8 Nov 2012 08:37:47 -0800 (PST)
Received: from peregrine.verisign.com ([216.168.239.74]) (using TLSv1) by exprod6ob108.postini.com ([64.18.5.12]) with SMTP ID DSNKUJvf29jW4Emy5Mi8FqF6/kJIYV9FQs4K@postini.com; Thu, 08 Nov 2012 08:37:47 PST
Received: from brn1wnexcas02.vcorp.ad.vrsn.com (brn1wnexcas02.vcorp.ad.vrsn.com [10.173.152.206]) by peregrine.verisign.com (8.13.6/8.13.4) with ESMTP id qA8Gbhbe006593 (version=TLSv1/SSLv3 cipher=AES128-SHA bits=128 verify=FAIL) for <domainrep@ietf.org>; Thu, 8 Nov 2012 11:37:46 -0500
Received: from BRN1WNEXMBX01.vcorp.ad.vrsn.com ([::1]) by brn1wnexcas02.vcorp.ad.vrsn.com ([::1]) with mapi id 14.02.0318.004; Thu, 8 Nov 2012 11:37:43 -0500
From: "Hollenbeck, Scott" <shollenbeck@verisign.com>
To: "domainrep@ietf.org" <domainrep@ietf.org>
Thread-Topic: Third-Party Denial of Service in draft-kucherawy-repute-considerations
Thread-Index: AQHNvc9gTxo2p/s9J0uzecqZFwn/uw==
Date: Thu, 08 Nov 2012 16:37:43 +0000
Message-ID: <831693C2CDA2E849A7D7A712B24E257F0D6AF437@BRN1WNEXMBX01.vcorp.ad.vrsn.com>
References: <20121108041708.3871.27096.idtracker@ietfa.amsl.com>
In-Reply-To: <20121108041708.3871.27096.idtracker@ietfa.amsl.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.173.152.4]
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
Subject: [domainrep] Third-Party Denial of Service in draft-kucherawy-repute-considerations
X-BeenThere: domainrep@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Domain Reputation discussion list <domainrep.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/domainrep>, <mailto:domainrep-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/domainrep>
List-Post: <mailto:domainrep@ietf.org>
List-Help: <mailto:domainrep-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/domainrep>, <mailto:domainrep-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 08 Nov 2012 16:37:48 -0000

Murray,

I'd like to see some mention of an additional denial of service implication, but I'm not exactly sure of where it belongs given the current sections. Where do you think it would be appropriate to add text that describes a denial of service risk to (for example) customers of shared hosting services who find themselves on the unhappy end of an IP address that is gaining a "bad" reputation because of a bad actor that's sharing the address? It might help to add a section for third parties who aren't clients or servers if there are any other third-party implications or side-effects.

Scott