Re: Last Call: draft-irtf-asrg-dnsbl (DNS Blacklists and Whitelists)

Tony Finch <dot@dotat.at> Tue, 11 November 2008 16:40 UTC

Return-Path: <ietf-bounces@ietf.org>
X-Original-To: ietf-archive@megatron.ietf.org
Delivered-To: ietfarch-ietf-archive@core3.amsl.com
Received: from [127.0.0.1] (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id AD49628C1A2; Tue, 11 Nov 2008 08:40:41 -0800 (PST)
X-Original-To: ietf@core3.amsl.com
Delivered-To: ietf@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 8DFAB28C136 for <ietf@core3.amsl.com>; Tue, 11 Nov 2008 08:40:40 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -5.8
X-Spam-Level:
X-Spam-Status: No, score=-5.8 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4, SARE_SUB_RAND_LETTRS4=0.799]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id W1MPzEVwfmZG for <ietf@core3.amsl.com>; Tue, 11 Nov 2008 08:40:39 -0800 (PST)
Received: from ppsw-0.csi.cam.ac.uk (ppsw-0.csi.cam.ac.uk [131.111.8.130]) by core3.amsl.com (Postfix) with ESMTP id 6B69028C1B9 for <ietf@ietf.org>; Tue, 11 Nov 2008 08:40:39 -0800 (PST)
X-Cam-AntiVirus: no malware found
X-Cam-SpamDetails: not scanned
X-Cam-ScannerInfo: http://www.cam.ac.uk/cs/email/scanner/
Received: from hermes-1.csi.cam.ac.uk ([131.111.8.51]:35662) by ppsw-0.csi.cam.ac.uk (smtp.hermes.cam.ac.uk [131.111.8.150]:25) with esmtpa (EXTERNAL:fanf2) id 1KzwI4-0006iq-2T (Exim 4.70) (return-path <fanf2@hermes.cam.ac.uk>); Tue, 11 Nov 2008 16:40:32 +0000
Received: from fanf2 (helo=localhost) by hermes-1.csi.cam.ac.uk (hermes.cam.ac.uk) with local-esmtp id 1KzwI4-0002Tj-O2 (Exim 4.67) (return-path <fanf2@hermes.cam.ac.uk>); Tue, 11 Nov 2008 16:40:32 +0000
Date: Tue, 11 Nov 2008 16:40:32 +0000
From: Tony Finch <dot@dotat.at>
X-X-Sender: fanf2@hermes-1.csi.cam.ac.uk
To: Theodore Tso <tytso@mit.edu>
Subject: Re: Last Call: draft-irtf-asrg-dnsbl (DNS Blacklists and Whitelists)
In-Reply-To: <20081111143849.GA13960@mit.edu>
Message-ID: <alpine.LSU.2.00.0811111625500.23184@hermes-1.csi.cam.ac.uk>
References: <A.1KzaJs-0008yI-GB@smtp-ext-layer.spamhaus.org> <20081111143849.GA13960@mit.edu>
User-Agent: Alpine 2.00 (LSU 1167 2008-08-23)
MIME-Version: 1.0
Cc: ietf@ietf.org
X-BeenThere: ietf@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: IETF-Discussion <ietf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=unsubscribe>
List-Post: <mailto:ietf@ietf.org>
List-Help: <mailto:ietf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=subscribe>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Sender: ietf-bounces@ietf.org
Errors-To: ietf-bounces@ietf.org

On Tue, 11 Nov 2008, Theodore Tso wrote:
>
> Questions like, "so how does this work in the face of the expanded
> IPv6 address space", ideally should be addressed earlier during the
> standardization process, and not in last call (where, "oh well, we'll
> just block the whole /48 or /32" might have unfortunate side effects
> not forseen yet)

That's a matter of listing policy not of protocol. It would be premature
to lay down regulations about what can be put in an IPv6 blacklist, since
we don't have enough operational experience yet. If you try to guess and
the rules turn out not to work in practice, then they will be ignored and
cast doubt on the rest of the document.

This document should concentrate on the mechanisms, which are simple and
uncontroversial, and leave questions of policy aside.

Note that anti-spam blacklists are distributed by more mechanisms than
just the DNS. Questions of listing policy apply whatever protocol is
used, so they shouldn't be addressed in a document that just describes
a DNS-based query protocol.

> --- but which don't make sense if the goal is to document existing
> practice.

The goal is to document existing practice AND extend it in a straight-
forward way to IPv6 so that implementations are ready BEFORE IPv6 spam
becomes a problem.

Tony.
-- 
f.anthony.n.finch  <dot@dotat.at>  http://dotat.at/
VIKING NORTH UTSIRE SOUTH UTSIRE: SOUTHEASTERLY BACKING NORTHWESTERLY 5 TO 7.
ROUGH OR VERY ROUGH DECREASING MODERATE OR ROUGH. RAIN OR SHOWERS. MODERATE OR
GOOD.
_______________________________________________
Ietf mailing list
Ietf@ietf.org
https://www.ietf.org/mailman/listinfo/ietf