Re: [Dots] Call for adoption on draft-boucadair-dots-server-discovery

"Konda, Tirumaleswar Reddy" <TirumaleswarReddy_Konda@McAfee.com> Thu, 13 December 2018 09:42 UTC

Return-Path: <TirumaleswarReddy_Konda@mcafee.com>
X-Original-To: dots@ietfa.amsl.com
Delivered-To: dots@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1DCAD124BE5 for <dots@ietfa.amsl.com>; Thu, 13 Dec 2018 01:42:14 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.461
X-Spam-Level:
X-Spam-Status: No, score=-3.461 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-1.46, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=mcafee.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id we4eLKyrVd3c for <dots@ietfa.amsl.com>; Thu, 13 Dec 2018 01:42:12 -0800 (PST)
Received: from DNVWSMAILOUT1.mcafee.com (dnvwsmailout1.mcafee.com [161.69.31.173]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EE95C12426E for <dots@ietf.org>; Thu, 13 Dec 2018 01:42:11 -0800 (PST)
X-NAI-Header: Modified by McAfee Email Gateway (5500)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=mcafee.com; s=s_mcafee; t=1544694144; h=From: To:CC:Subject:Thread-Topic:Thread-Index:Date: Message-ID:References:In-Reply-To:Accept-Language: Content-Language:X-MS-Has-Attach:X-MS-TNEF-Correlator: dlp-product:dlp-version:dlp-reaction:authentication-results: x-originating-ip:x-ms-publictraffictype:x-microsoft-exchange-diagnostics: x-ms-exchange-antispam-srfa-diagnostics:x-ms-office365-filtering-correlation-id: x-microsoft-antispam:x-ms-traffictypediagnostic: x-microsoft-antispam-prvs:x-ms-exchange-senderadcheck: x-exchange-antispam-report-cfa-test:x-forefront-prvs: x-forefront-antispam-report:received-spf:x-microsoft-antispam-message-info: spamdiagnosticoutput:spamdiagnosticmetadata: Content-Type:Content-Transfer-Encoding:MIME-Version: X-MS-Exchange-CrossTenant-Network-Message-Id: X-MS-Exchange-CrossTenant-originalarrivaltime: X-MS-Exchange-CrossTenant-fromentityheader: X-MS-Exchange-CrossTenant-id:X-MS-Exchange-Transport-CrossTenantHeadersStamped: X-OriginatorOrg:X-NAI-Spam-Flag:X-NAI-Spam-Level: X-NAI-Spam-Threshold:X-NAI-Spam-Score:X-NAI-Spam-Version; bh=6pRZIdPsc5pAN/m2JC3XaQpa5n6RtJnKONxMRO wbopc=; b=YcGTpLeOTB+TPTuSev/FAuS0x8AkL35N0MgmmFhw N6c2rxOBEZFfn37ulEG1zJ0p8Ofq8IX7DFHJnj/wgToBumG3bx G2eQWMQ45oBHOrNm2S23tF+FEXvXZu+qcUiOS3ZSxTUlqPk/kQ 3vwlMTKMu9l6wARABv3i2+OpZELl6yE=
Received: from DNVEXAPP1N04.corpzone.internalzone.com (unknown [10.44.48.88]) by DNVWSMAILOUT1.mcafee.com with smtp (TLS: TLSv1/SSLv3,256bits,ECDHE-RSA-AES256-SHA384) id 2778_d600_92b944c3_3228_482a_8a3b_971dc648a659; Thu, 13 Dec 2018 03:42:24 -0600
Received: from DNVEXAPP1N06.corpzone.internalzone.com (10.44.48.90) by DNVEXAPP1N04.corpzone.internalzone.com (10.44.48.88) with Microsoft SMTP Server (TLS) id 15.0.1347.2; Thu, 13 Dec 2018 02:41:29 -0700
Received: from DNVO365EDGE1.corpzone.internalzone.com (10.44.176.66) by DNVEXAPP1N06.corpzone.internalzone.com (10.44.48.90) with Microsoft SMTP Server (TLS) id 15.0.1347.2 via Frontend Transport; Thu, 13 Dec 2018 02:41:29 -0700
Received: from NAM02-CY1-obe.outbound.protection.outlook.com (10.44.176.242) by edge.mcafee.com (10.44.176.66) with Microsoft SMTP Server (TLS) id 15.0.1347.2; Thu, 13 Dec 2018 02:41:28 -0700
Received: from BN6PR16MB1425.namprd16.prod.outlook.com (10.172.207.19) by BN6PR16MB1796.namprd16.prod.outlook.com (10.172.28.148) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.1404.21; Thu, 13 Dec 2018 09:41:28 +0000
Received: from BN6PR16MB1425.namprd16.prod.outlook.com ([fe80::b8de:7bb:cfa3:22ee]) by BN6PR16MB1425.namprd16.prod.outlook.com ([fe80::b8de:7bb:cfa3:22ee%8]) with mapi id 15.20.1404.026; Thu, 13 Dec 2018 09:41:27 +0000
From: "Konda, Tirumaleswar Reddy" <TirumaleswarReddy_Konda@McAfee.com>
To: Dan Wing <danwing@gmail.com>, Roman Danyliw <rdd@cert.org>
CC: "dots@ietf.org" <dots@ietf.org>
Thread-Topic: [Dots] Call for adoption on draft-boucadair-dots-server-discovery
Thread-Index: AdSI+mzom/yrMKu/SJm1ohZrl+sYtAJmLD8AAAu72ZA=
Date: Thu, 13 Dec 2018 09:41:27 +0000
Message-ID: <BN6PR16MB14256E2AB18E6BB60CE26630EAA00@BN6PR16MB1425.namprd16.prod.outlook.com>
References: <359EC4B99E040048A7131E0F4E113AFC0184C52F1B@marathon> <6C0138CB-2B3C-4A9D-A013-2232879A72AD@gmail.com>
In-Reply-To: <6C0138CB-2B3C-4A9D-A013-2232879A72AD@gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
dlp-product: dlpe-windows
dlp-version: 11.1.0.61
dlp-reaction: no-action
authentication-results: spf=none (sender IP is ) smtp.mailfrom=TirumaleswarReddy_Konda@McAfee.com;
x-originating-ip: [103.245.47.20]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; BN6PR16MB1796; 6:LTfPomEU0tbBBYLa1uS2yqGMoLgdcu61pB7jXWbyE3ZzKnCiuoA6zx22poL6ZgPErKbIsJ3rhFSqah1VzfMrGv1WKKNNsLF+TA6q/Y//PsstAGrr81GeDIlOECNDJLQQbDMp7K+7FWXYPc1jYkAvQrGYBDQHpThRw6svIgjH1XWhJvJLQpMkhdMjHyhEAqs3LHJUD6XPE/ZNSF3GQVXSKvWMnfEScPSLhsuJm8oVZgxMEfxNASfomAPZlpd1gORT9qSCmziKS6xs2by6gqrpAitHKhJj4g/ZnvLdhs36ZU/5xfcvjEr+Q/MBt9aCkMMZ/Uza6sS6Lp4gcv/Uq4siWRdij+JQ6BdVwhq2SIZUOXmq36+ASNAn2hYGzGF5wU3YLOIa18c+hr4wJiPjgMZKMWdilF078TJEQDCeuhm5tLZ4jGzntpDBtZAH9nXmmUI1JgpkpySG3kfIOgLLPjSXGg==; 5:D6Etl6ikiNzxw8HzRU2c3Gva+ls4ES9iBO/sClPfEtAv+0MHAShHgqNvCADxJvwzW0zzN7alCpsUE2FvuWuRQvrCzVTydPQIBwo1O94YHDVXYB6ZMJgPeFWTypzpodtUYiHfhKZOKJRPu1goxJuF8UT+rINUcHotgpC8QchHwU0=; 7:CivfrTqUXXZIy9/mUfV0GoCaUVIduiS9KqDMve5U7iby58j879lKqHfqUrJ8fC04umL0R5ATzH9gAJUk6yGt+qN5/l8hJDfVIlHVpineVD5KVYPIKmtAqfOLUmpYCtQbTT7SPgbuVqjoVOpKU0r6Ag==
x-ms-exchange-antispam-srfa-diagnostics: SOS;
x-ms-office365-filtering-correlation-id: 29934b7b-41f6-4f91-e74a-08d660df27b2
x-microsoft-antispam: BCL:0; PCL:0; RULEID:(2390098)(7020095)(4652040)(8989299)(4534185)(4627221)(201703031133081)(201702281549075)(8990200)(5600074)(711020)(2017052603328)(7153060)(7193020); SRVR:BN6PR16MB1796;
x-ms-traffictypediagnostic: BN6PR16MB1796:
x-microsoft-antispam-prvs: <BN6PR16MB1796717CB0EBFBAC3C5DBDF6EAA00@BN6PR16MB1796.namprd16.prod.outlook.com>
x-ms-exchange-senderadcheck: 1
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(8211001083)(3230021)(999002)(6040522)(2401047)(5005006)(8121501046)(93006095)(93001095)(3231475)(944501520)(52105112)(3002001)(10201501046)(148016)(149066)(150057)(6041310)(20161123558120)(201703131423095)(201702281528075)(20161123555045)(201703061421075)(201703061406153)(20161123564045)(20161123562045)(20161123560045)(201708071742011)(7699051)(76991095); SRVR:BN6PR16MB1796; BCL:0; PCL:0; RULEID:; SRVR:BN6PR16MB1796;
x-forefront-prvs: 088552DE73
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(136003)(396003)(366004)(346002)(39860400002)(376002)(13464003)(32952001)(199004)(189003)(2906002)(446003)(5660300001)(229853002)(86362001)(11346002)(476003)(478600001)(14454004)(66066001)(68736007)(99286004)(486006)(186003)(76176011)(26005)(97736004)(55016002)(80792005)(33656002)(7736002)(25786009)(7696005)(6506007)(53936002)(6436002)(3846002)(74316002)(6116002)(305945005)(4326008)(81166006)(53546011)(105586002)(72206003)(106356001)(14444005)(6246003)(81156014)(8936002)(39060400002)(256004)(5024004)(966005)(110136005)(316002)(9686003)(6306002)(71190400001)(102836004)(71200400001)(8676002)(85282002); DIR:OUT; SFP:1101; SCL:1; SRVR:BN6PR16MB1796; H:BN6PR16MB1425.namprd16.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1;
received-spf: None (protection.outlook.com: McAfee.com does not designate permitted sender hosts)
x-microsoft-antispam-message-info: 7zwThkrUjeEVJiMcaczayC8wn/zm2LE5W5HiH1MHg10iPM2DKhCPA46JDHgh+dSqxlfsPC/48srOBWKCg3a8oxJcy+yMFPb/vNnZKPXwW2P2YAwIBh5Bn41eoK1R6tc5e4m5yxb8cqmupENURaqdkpToZqOuSoGzlwxIJ9ZJMSAjHwvEBS45euE3w4vzlLgpPJZuMCMHGZOH+jkO9qMdU7Mz7rTO9QH1yC/AOFZX2zK6yiy8fvOsTRgH4OjYfj+NwLgAdKY1D4sKiNUpRKaxlH73U8XbrViOFrDX++wK3BK0bK4o+p2oqXpsHEbZ/DPt
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-Network-Message-Id: 29934b7b-41f6-4f91-e74a-08d660df27b2
X-MS-Exchange-CrossTenant-originalarrivaltime: 13 Dec 2018 09:41:27.7341 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 4943e38c-6dd4-428c-886d-24932bc2d5de
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BN6PR16MB1796
X-OriginatorOrg: mcafee.com
X-NAI-Spam-Flag: NO
X-NAI-Spam-Level:
X-NAI-Spam-Threshold: 15
X-NAI-Spam-Score: 0.1
X-NAI-Spam-Version: 2.3.0.9418 : core <6438> : inlines <6985> : streams <1806994> : uri <2764146>
Archived-At: <https://mailarchive.ietf.org/arch/msg/dots/lN-gn76vrdoDPMxh-RPIeOMk180>
Subject: Re: [Dots] Call for adoption on draft-boucadair-dots-server-discovery
X-BeenThere: dots@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "List for discussion of DDoS Open Threat Signaling \(DOTS\) technology and directions." <dots.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dots>, <mailto:dots-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dots/>
List-Post: <mailto:dots@ietf.org>
List-Help: <mailto:dots-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dots>, <mailto:dots-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 13 Dec 2018 09:42:14 -0000

Hi Dan,

Good point. DHCP to learn the DOTS sever information does not look suitable, the DHCP client will not have a secure trusted relationship with the DHCP server to learn the DOTS server information (see the challenges we faced in DNS over TLS https://tools.ietf.org/html/rfc8310#section-7.3.1 for using DHCP).

For auto discovery the DOTS client can try mDNS or anycast or both to reach the DOTS gateway, and the DOTS gateway can try both DNS-SD or anycast or both to reach the DOTS server in the ISP network.

Cheers,
-Tiru

> -----Original Message-----
> From: Dots <dots-bounces@ietf.org> On Behalf Of Dan Wing
> Sent: Thursday, December 13, 2018 8:53 AM
> To: Roman Danyliw <rdd@cert.org>
> Cc: dots@ietf.org
> Subject: Re: [Dots] Call for adoption on draft-boucadair-dots-server-discovery
> 
> This email originated from outside of the organization. Do not click links or
> open attachments unless you recognize the sender and know the content is
> safe.
> 
> I support adoption of this draft.
> 
> However, I would really encourage the working group to analyze if all 4
> discovery methods are really necessary.  4 mechanisms causes a bifurcation
> of products.  It complicates the features of a DOTS gateway, and raises
> questions such as "is quality implementation of a DOTS gateway expected to
> interoperate amongst the 4 DOTS discovery mechanisms."  Such
> interoperation becomes necessary when, say, some devices won't support
> DHCPv6 (Android) but an ISP only supports DHCPv4 & DHCPv6 DOTS
> discovery, for example.  There are other examples of incompatible discovery
> and how a vendor or an open-source DOTS gateway might try to overcome
> such issues with a Discovery Interoperability Feature ...
> 
> -d
> 
> 
> > On Nov 30, 2018, at 2:21 PM, Roman Danyliw <rdd@cert.org> wrote:
> >
> > Hello!
> >
> > This is the start of a two week call for input on the WG adoption of the
> document:
> >
> > draft-boucadair-dots-server-discovery
> > https://tools.ietf.org/html/draft-boucadair-dots-server-discovery-05
> >
> > The document has been presented and discussed at IETF 103, IETF 100 and
> IETF 99;  and revisions have been made based on WG feedback.  Discussion
> of adoption of this draft was previously deferred pending submission of the
> signal draft for publication (which occurred in September 2018).
> >
> > At the IETF 103 meeting, there were not many participants who had read
> the draft.
> >
> > Please provide feedback to the list/chairs if you believe that this document
> should be adopted as a WG document.  The adoption call will end on
> December 14 2018.
> >
> > Regards,
> > Roman and Frank
> >
> > _______________________________________________
> > Dots mailing list
> > Dots@ietf.org
> > https://www.ietf.org/mailman/listinfo/dots
> 
> _______________________________________________
> Dots mailing list
> Dots@ietf.org
> https://www.ietf.org/mailman/listinfo/dots