Re: new RRTYPEs, was DNSSEC architecture vs reality

John R Levine <johnl@taugh.com> Tue, 13 April 2021 15:28 UTC

Return-Path: <johnl@taugh.com>
X-Original-To: ietf@ietfa.amsl.com
Delivered-To: ietf@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id CAA973A1B3D for <ietf@ietfa.amsl.com>; Tue, 13 Apr 2021 08:28:07 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.857
X-Spam-Level:
X-Spam-Status: No, score=-0.857 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, NORMAL_HTTP_TO_IP=0.001, NUMERIC_HTTP_ADDR=1.242, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=iecc.com header.b=hYx1CwiY; dkim=pass (2048-bit key) header.d=taugh.com header.b=Nyt/qHCB
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 8GujYmCJzLIm for <ietf@ietfa.amsl.com>; Tue, 13 Apr 2021 08:28:01 -0700 (PDT)
Received: from gal.iecc.com (gal.iecc.com [IPv6:2001:470:1f07:1126:0:43:6f73:7461]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 82A2B3A15DA for <ietf@ietf.org>; Tue, 13 Apr 2021 08:28:01 -0700 (PDT)
Received: (qmail 80766 invoked from network); 13 Apr 2021 15:27:58 -0000
DKIM-Signature: v=1; a=rsa-sha256; c=simple; d=iecc.com; h=date:message-id:from:to:cc:subject:in-reply-to:references:mime-version:content-type; s=13b79.6075b87e.k2104; bh=Z1E1VxfErVRsQATi38jK418eWNn8CRTu0wV6b2y7gZ0=; b=hYx1CwiY6q5/v0c6B81O++ka4nTTqdugWyh1exFr5QL+7RugQrLHwfXki/5j0TLSZgCWrCorSsRydU8EWsuXSmtp+qK2kbS//hUj9XCnH2X0bRvt5pk012ETDBs/6839oYBzJb4iwHa6EcKMVpiEQKZpdrMgnF6hw7C+dAmlp59qDsWpSPSGYVt840l06S7K6fvqk/7HdwNquXMyfGYojODj8WaPNW2ZuUsKYDYjzoMm/aBip655zoKYsTv8XR8D5yJgT+Z9kdGlBr+kwVy2B3EATSz2cu2mjG7dxewzvdQH0PWopjuSq3Ttejb/rW0t4zSqatN/7KHRZ3noeAJ5uA==
DKIM-Signature: v=1; a=rsa-sha256; c=simple; d=taugh.com; h=date:message-id:from:to:cc:subject:in-reply-to:references:mime-version:content-type; s=13b79.6075b87e.k2104; bh=Z1E1VxfErVRsQATi38jK418eWNn8CRTu0wV6b2y7gZ0=; b=Nyt/qHCB6d2L5fEGRRkmeidBbunAsMsqZOmCHFhZ38TUDcSckvZuimq7d8ieljE0uonfChIuli4ChxMgYulI++fJw4nFoB6aWaKGSDMLvLxkoA0YFRhGVPPD3dTWzASlkLreNcGyqrbnW/u5PQUPVCXFnGXWu66WE/aSx6dhj5Wysud9iwarR3Vdhv8cejkVRprsh+Fjj5OBInHTfnWY/Jvh1lwWR/onnVHR/3iUd/9PA+krHP9cQyCmH1FNFcVSeZxiG8pTvHd9O3hmHy1mpJjD2prSe+tYxbxmqHWqThxPYVq6hIHYqw1od9ftX9EI3nOJ366echskNcNebnNJ4Q==
Received: from ary.qy ([IPv6:2001:470:1f07:1126::78:696d:6170]) by imap.iecc.com ([IPv6:2001:470:1f07:1126::78:696d:6170]) with ESMTPS (TLS1.2 ECDHE-RSA AES-256-GCM AEAD) via TCP6; 13 Apr 2021 15:27:57 -0000
Received: by ary.qy (Postfix, from userid 501) id B2FD572CE98E; Tue, 13 Apr 2021 11:27:56 -0400 (EDT)
Received: from localhost (localhost [127.0.0.1]) by ary.qy (Postfix) with ESMTP id 1AC7672CE970; Tue, 13 Apr 2021 11:27:56 -0400 (EDT)
Date: 13 Apr 2021 11:27:55 -0400
Message-ID: <1c90249a-a9ad-52dd-bbc5-5e4bc6e6bdf@taugh.com>
From: "John R Levine" <johnl@taugh.com>
To: "Mark Andrews" <marka@isc.org>
Cc: "IETF general list" <ietf@ietf.org>
X-X-Sender: johnl@ary.qy
Subject: Re: new RRTYPEs, was DNSSEC architecture vs reality
In-Reply-To: <C8C39247-226E-4C78-88E8-3AC215F2FF21@isc.org>
References: <20210413015000.9297272C47BA@ary.qy> <C8C39247-226E-4C78-88E8-3AC215F2FF21@isc.org>
MIME-Version: 1.0
Content-Type: multipart/mixed; boundary="0-1918173544-1618327676=:17153"
Archived-At: <https://mailarchive.ietf.org/arch/msg/ietf/u-4dwfm7naXPhOFnIXQ-oR7oyro>
X-BeenThere: ietf@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IETF-Discussion <ietf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ietf>, <mailto:ietf-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ietf/>
List-Post: <mailto:ietf@ietf.org>
List-Help: <mailto:ietf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 13 Apr 2021 15:28:08 -0000

On Tue, 13 Apr 2021, Mark Andrews wrote:

> John,
> 	please show how this would be used to parse a HTTPS record
> without extending the format?

It doesn't.  If an RRTYPE uses a new field type, you need to write code. 
But if you look at the list of RRTYPEs in the library I wrote, only seven 
of them need unique field types and the rest use regular fields.

Also keep in mind that typical provisioning crudware currently handles 
about six RRTYPEs, and this is a way to at least catch up with the past 
several decades.  It's not a panacea but it lessens the pain a lot.

R's,
John

PS: I expect that if HTTPS and SVCB are standardized, people will pretend 
to be surprised that nobody uses them because there's no way to provision 
them through registrar crudware.



> HTTPS:65 HTTPS Record
>     I2:SvcPriority
>     N:TargetName
>     Z[SvcParm,M0]:SvcParams
>
> The problem with the draft is that you are hiding the complexity in
> "Miscellaneous fields” section of the draft which would need to be
> updated for many new RR types.  SVCB/HTTPS is just a case in point.