Re: [DNSOP] Last Call: <draft-ietf-dnsop-child-syncronization-02.txt> (Child To Parent Synchronization in DNS) to Proposed Standard

Wes Hardaker <wjhns1@hardakers.net> Tue, 19 August 2014 15:17 UTC

Return-Path: <wjhns1@hardakers.net>
X-Original-To: ietf@ietfa.amsl.com
Delivered-To: ietf@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 8372D1A0464 for <ietf@ietfa.amsl.com>; Tue, 19 Aug 2014 08:17:38 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: 2.354
X-Spam-Level: **
X-Spam-Status: No, score=2.354 tagged_above=-999 required=5 tests=[BAYES_05=-0.5, FH_RELAY_NODNS=1.451, HELO_MISMATCH_NET=0.611, RDNS_NONE=0.793, SPF_PASS=-0.001] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id EAlCiNGJugKa for <ietf@ietfa.amsl.com>; Tue, 19 Aug 2014 08:17:38 -0700 (PDT)
Received: from mail.hardakers.net (unknown [IPv6:2001:470:1f00:187::1]) by ietfa.amsl.com (Postfix) with ESMTP id B08871A045E for <ietf@ietf.org>; Tue, 19 Aug 2014 08:17:36 -0700 (PDT)
Received: from localhost (wjh.hardakers.net [10.0.0.2]) by mail.hardakers.net (Postfix) with ESMTPSA id 9966625218; Tue, 19 Aug 2014 08:17:35 -0700 (PDT)
From: Wes Hardaker <wjhns1@hardakers.net>
To: George Michaelson <ggm@algebras.org>
Subject: Re: [DNSOP] Last Call: <draft-ietf-dnsop-child-syncronization-02.txt> (Child To Parent Synchronization in DNS) to Proposed Standard
References: <20140808151621.1148.70609.idtracker@ietfa.amsl.com> <53E7D16B.3020301@bogus.com> <m2zjfbx31s.wl%randy@psg.com> <CAKr6gn0Qf7AAfvgY2FqB1AM7g_3BH2a24rogG2h6yARAMzLK8g@mail.gmail.com>
Date: Tue, 19 Aug 2014 08:17:35 -0700
In-Reply-To: <CAKr6gn0Qf7AAfvgY2FqB1AM7g_3BH2a24rogG2h6yARAMzLK8g@mail.gmail.com> (George Michaelson's message of "Mon, 11 Aug 2014 11:10:36 +1000")
Message-ID: <0ltx581pbk.fsf@wjh.hardakers.net>
User-Agent: Gnus/5.13001 (Ma Gnus v0.10) Emacs/24.3 (gnu/linux)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
Archived-At: http://mailarchive.ietf.org/arch/msg/ietf/B-wZ_cI01XZaa48Uk3gYVBmu5Zc
Cc: IETF Disgust <ietf@ietf.org>
X-BeenThere: ietf@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: IETF-Discussion <ietf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ietf>, <mailto:ietf-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ietf/>
List-Post: <mailto:ietf@ietf.org>
List-Help: <mailto:ietf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 19 Aug 2014 15:17:38 -0000

George Michaelson <ggm@algebras.org> writes:

> are you saying you want one document? they appear to do slightly different things. One signals DS/DNSKEY update and nothing
> else. The other has a flagword capable notation and signals intent about immediacy or SOA timed change, in and out of
> baliwick, and the NS list. 
>
> I could imagine a net win by the authors banging this into one
> document. YMMV

This was heavily discussed in the WG meetings.  The authors actually
don't want them to be merged (and this was the result of the long WG
consensus too).  One deals with the security implications of the
security specific bootstrapping records (the DNSKEY and DS record), and
the other *requires* the use of that record to be already operationally
complete.  The delegation-trust-maintainance document also requires a
different security evaluation when performing the record authorization.
I.E., the CDS record must be signed by the SEP key (KSK), not just
any-old non-SEP key (a ZSK).  The child-synchronization draft doesn't
require this to be true.

So though it *looks* like the problems are similar, there are a bunch of
underpinnings that make them rather different.  Hence the reason we
don't think it's wise to merge them, as it'll actually make it
problematic from a writing and reading perspective: processing of the
records is quite different (and needs to be).

-- 
Wes Hardaker
Parsons