Re: [Dots] Magnus Westerlund's No Objection on draft-ietf-dots-server-discovery-14: (with COMMENT)

"Konda, Tirumaleswar Reddy" <TirumaleswarReddy_Konda@McAfee.com> Fri, 06 November 2020 07:44 UTC

Return-Path: <tirumaleswarreddy_konda@mcafee.com>
X-Original-To: dots@ietfa.amsl.com
Delivered-To: dots@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A906A3A0E53 for <dots@ietfa.amsl.com>; Thu, 5 Nov 2020 23:44:11 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.101
X-Spam-Level:
X-Spam-Status: No, score=-2.101 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_MSPIKE_H2=-0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=mcafee.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id kHaORo3YjkdJ for <dots@ietfa.amsl.com>; Thu, 5 Nov 2020 23:44:07 -0800 (PST)
Received: from us-smtp-delivery-140.mimecast.com (us-smtp-delivery-140.mimecast.com [216.205.24.140]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0F36D3A0E51 for <dots@ietf.org>; Thu, 5 Nov 2020 23:44:06 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=mcafee.com; s=mimecast20190606; t=1604648646; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=3pi/nYb+5r/4MuaLxwFKHun3iR4c6o29rdgSmviw8vw=; b=HusMH+BC1BoDiP+J8nRNHiasu4sUxkIMLEtmx8ZAS1mjKU0Jp8GHP0ocnmkIPsEK4M5rSQ VWnUoeUYIIF4lTIvy68Dyjuw7aR9mNbWIlLRe3K7i8eGe5L085QekZAFUr1gA+7BE6HUcT pQpySUaEYh9xVRVOuPB0Flo+0xf+4dk=
Received: from NAM12-BN8-obe.outbound.protection.outlook.com (mail-bn8nam12lp2169.outbound.protection.outlook.com [104.47.55.169]) (Using TLS) by relay.mimecast.com with ESMTP id us-mta-475-EHTKfepaPgu4vkDoXH-l4Q-1; Fri, 06 Nov 2020 02:44:03 -0500
X-MC-Unique: EHTKfepaPgu4vkDoXH-l4Q-1
Received: from DM6PR16MB3402.namprd16.prod.outlook.com (2603:10b6:5:148::13) by DM6PR16MB3113.namprd16.prod.outlook.com (2603:10b6:5:192::31) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3499.18; Fri, 6 Nov 2020 07:44:02 +0000
Received: from DM6PR16MB3402.namprd16.prod.outlook.com ([fe80::34c8:e126:315d:718e]) by DM6PR16MB3402.namprd16.prod.outlook.com ([fe80::34c8:e126:315d:718e%5]) with mapi id 15.20.3499.032; Fri, 6 Nov 2020 07:44:02 +0000
From: "Konda, Tirumaleswar Reddy" <TirumaleswarReddy_Konda@McAfee.com>
To: Magnus Westerlund <magnus.westerlund@ericsson.com>, The IESG <iesg@ietf.org>
CC: "draft-ietf-dots-server-discovery@ietf.org" <draft-ietf-dots-server-discovery@ietf.org>, "dots-chairs@ietf.org" <dots-chairs@ietf.org>, "dots@ietf.org" <dots@ietf.org>, Valery Smyslov <valery@smyslov.net>
Thread-Topic: Magnus Westerlund's No Objection on draft-ietf-dots-server-discovery-14: (with COMMENT)
Thread-Index: AQHWs3t9S513Nb09M0CuTcs3PWb/SKm6uevA
Date: Fri, 06 Nov 2020 07:44:02 +0000
Message-ID: <DM6PR16MB3402A32E4756607C1F7F46C9EAED0@DM6PR16MB3402.namprd16.prod.outlook.com>
References: <160458459549.15207.15947838166522017934@ietfa.amsl.com>
In-Reply-To: <160458459549.15207.15947838166522017934@ietfa.amsl.com>
Accept-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
dlp-product: dlpe-windows
dlp-version: 11.6.0.68
dlp-reaction: no-action
x-originating-ip: [49.37.167.51]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 4d4cf526-c17e-4015-8101-08d88227babd
x-ms-traffictypediagnostic: DM6PR16MB3113:
x-microsoft-antispam-prvs: <DM6PR16MB3113E7AA07AACBAD622754D3EAED0@DM6PR16MB3113.namprd16.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:9508
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0
x-microsoft-antispam-message-info: NWfBjoedOymawsQzUT084XUlTzcctvgdmTpFwKVCB3vwAUxNvnXpn3Ii035SuK+eqn7fbjPvfwYVmgMDVt5pqW3/m31igXye4hBtLAzghmaXG8vh+9v8TEu9SQO2lKu/ea21nlsVT2K/hIdnDsHC+S4MS2G5qjQdtNnyk2sTEFRCqwnYtqjFvRCClfdzk+1WSo87lSguaAmTZwRELhL75t3KjfjkvPzVAF408ZkCNcAX9hNvcJRSBoBQFedo3sLs5hJmQkt4mJQQilUZ9dhUn8U0VtpSY9ixFZ7UCnFNY1H1mGqIoaTiXfxZOma7DaGdMko8eoGjdRu4O2lJcWD5O0zHRUu9V34RUmAFYoLI4/NNR7hajJYbbHvWCmLH/7/ly8vYZN56ZSk3R6IawFVpfZnpuuHT89E4ks2tyCIPHMsz/NRSXiGdw4+5TcXmkNJO3UahyjlQpTVRQOp6mW/FqK0vZGxRcI06DdysLshBN2c=
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DM6PR16MB3402.namprd16.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(366004)(39860400002)(346002)(136003)(376002)(396003)(32952001)(110136005)(66946007)(54906003)(64756008)(316002)(2906002)(83380400001)(4326008)(71200400001)(76116006)(66446008)(66476007)(52536014)(66556008)(6506007)(8936002)(33656002)(55016002)(8676002)(186003)(26005)(966005)(86362001)(9686003)(53546011)(7696005)(478600001)(5660300002)(85282002); DIR:OUT; SFP:1101
x-ms-exchange-antispam-messagedata: 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
x-ms-exchange-transport-forked: True
MIME-Version: 1.0
X-OriginatorOrg: mcafee.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DM6PR16MB3402.namprd16.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 4d4cf526-c17e-4015-8101-08d88227babd
X-MS-Exchange-CrossTenant-originalarrivaltime: 06 Nov 2020 07:44:02.0502 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 4943e38c-6dd4-428c-886d-24932bc2d5de
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: vtTk+fbMgTPVs/BhulkN+U4NFTWomfTajdQJhMWFUcnBz5WStUtYjfkuxxjwzz8Fx6plUc6UbdfVRou3iY+x+Ix25oYx5mjzwD1V7FYlPCvciPyfkOauDass5BA5WDFK
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM6PR16MB3113
Authentication-Results: relay.mimecast.com; auth=pass smtp.auth=CUSA40A35 smtp.mailfrom=tirumaleswarreddy_konda@mcafee.com
X-Mimecast-Spam-Score: 0
X-Mimecast-Originator: mcafee.com
Content-Language: en-US
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: base64
Archived-At: <https://mailarchive.ietf.org/arch/msg/dots/rr_MjcVho6G_D1CPiwK4FvqbMT4>
Subject: Re: [Dots] Magnus Westerlund's No Objection on draft-ietf-dots-server-discovery-14: (with COMMENT)
X-BeenThere: dots@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "List for discussion of DDoS Open Threat Signaling \(DOTS\) technology and directions." <dots.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dots>, <mailto:dots-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dots/>
List-Post: <mailto:dots@ietf.org>
List-Help: <mailto:dots-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dots>, <mailto:dots-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 06 Nov 2020 07:44:12 -0000

> -----Original Message-----
> From: Magnus Westerlund via Datatracker <noreply@ietf.org>
> Sent: Thursday, November 5, 2020 7:27 PM
> To: The IESG <iesg@ietf.org>
> Cc: draft-ietf-dots-server-discovery@ietf.org; dots-chairs@ietf.org;
> dots@ietf.org; Valery Smyslov <valery@smyslov.net>; valery@smyslov.net
> Subject: Magnus Westerlund's No Objection on draft-ietf-dots-server-
> discovery-14: (with COMMENT)
> 
> CAUTION: External email. Do not click links or open attachments unless you
> recognize the sender and know the content is safe.
> 
> Magnus Westerlund has entered the following ballot position for
> draft-ietf-dots-server-discovery-14: No Objection
> 
> When responding, please keep the subject line intact and reply to all email
> addresses included in the To and CC lines. (Feel free to cut this introductory
> paragraph, however.)
> 
> 
> Please refer to https://www.ietf.org/iesg/statement/discuss-criteria.html
> for more information about IESG DISCUSS and COMMENT positions.
> 
> 
> The document, along with other ballot positions, can be found here:
> https://datatracker.ietf.org/doc/draft-ietf-dots-server-discovery/
> 
> 
> 
> ----------------------------------------------------------------------
> COMMENT:
> ----------------------------------------------------------------------
> 
> Shouldn't the security consideration section 8.2 ave some additional warnings
> about the ease of affecting the dns lookup when .local is used. This as mDNS
> more easily can be gamed?

Yes, but the discovery uses global names and not ".local". DNSSEC can be used to validate the response.

-Tiru

> 
>