Re: DNS64, DANE and DPRIV

Mark Andrews <marka@isc.org> Sun, 07 December 2014 00:23 UTC

Return-Path: <marka@isc.org>
X-Original-To: ietf@ietfa.amsl.com
Delivered-To: ietf@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5F67E1A1EF3 for <ietf@ietfa.amsl.com>; Sat, 6 Dec 2014 16:23:40 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.911
X-Spam-Level:
X-Spam-Status: No, score=-1.911 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 8l_tt8fRMdAl for <ietf@ietfa.amsl.com>; Sat, 6 Dec 2014 16:23:39 -0800 (PST)
Received: from mx.pao1.isc.org (mx.pao1.isc.org [IPv6:2001:4f8:0:2::2b]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 34FC81A1EE9 for <ietf@ietf.org>; Sat, 6 Dec 2014 16:23:39 -0800 (PST)
Received: from zmx1.isc.org (zmx1.isc.org [149.20.0.20]) by mx.pao1.isc.org (Postfix) with ESMTP id 53A693493BE; Sun, 7 Dec 2014 00:23:37 +0000 (UTC)
Received: from zmx1.isc.org (localhost [127.0.0.1]) by zmx1.isc.org (Postfix) with ESMTP id 19479160067; Sun, 7 Dec 2014 00:27:49 +0000 (UTC)
Received: from rock.dv.isc.org (c211-30-183-50.carlnfd1.nsw.optusnet.com.au [211.30.183.50]) by zmx1.isc.org (Postfix) with ESMTPSA id DD69E160035; Sun, 7 Dec 2014 00:27:48 +0000 (UTC)
Received: from rock.dv.isc.org (localhost [IPv6:::1]) by rock.dv.isc.org (Postfix) with ESMTP id A191B2509F1C; Sun, 7 Dec 2014 11:23:34 +1100 (EST)
To: Randy Bush <randy@psg.com>
From: Mark Andrews <marka@isc.org>
References: <CAMm+Lwj+KjTVka1M7O+tsp76C_OCGR0bWKH_k5UrZXSYZrF+GA@mail.gmail.com> <20141206213552.2777C2508A06@rock.dv.isc.org> <m24mt8fmkk.wl%randy@psg.com> <20141206235836.92E062509740@rock.dv.isc.org> <m2tx18e3b5.wl%randy@psg.com>
Subject: Re: DNS64, DANE and DPRIV
In-reply-to: Your message of "Sun, 07 Dec 2014 09:01:02 +0900." <m2tx18e3b5.wl%randy@psg.com>
Date: Sun, 07 Dec 2014 11:23:34 +1100
Message-Id: <20141207002334.A191B2509F1C@rock.dv.isc.org>
Archived-At: http://mailarchive.ietf.org/arch/msg/ietf/dX8rpRpuBKC9Bx6-qR-DO969n7M
Cc: IETF Discussion Mailing List <ietf@ietf.org>
X-BeenThere: ietf@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: IETF-Discussion <ietf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ietf>, <mailto:ietf-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ietf/>
List-Post: <mailto:ietf@ietf.org>
List-Help: <mailto:ietf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 07 Dec 2014 00:23:40 -0000

In message <m2tx18e3b5.wl%randy@psg.com>, Randy Bush writes:
> >>> DNS64 is not the only solution for a ISP to go IPv6 only.
> >> 64 was motivated by the need for a 6-only *enterprise*
> >
> > And DNS64 requires NAT in the core and a fork lift upgrade of the
> > CPE to support IPv6.
> 
> no.  let's try reading what i said again.  i requires nat at the edge of
> the V6-ONLY ENTERPRISE.  considering the enterprise is v6-only and
> trying to talk to a v4 world, address translation is inevitable.

Yet we have ISPs trying to use / contemplating using DNS64.

DS-Lite in the enterprise would require moving DL-Lite to the node
and not all nodes.  Just those that need to communicate with the
outside world.  For most of those boxes it's just a reuse of existing
stack functionality.

> randy
-- 
Mark Andrews, ISC
1 Seymour St., Dundas Valley, NSW 2117, Australia
PHONE: +61 2 9871 4742                 INTERNET: marka@isc.org