Re: [Int-area] draft-pauly-intarea-proxy-config-pvd-00

"Eric Vyncke (evyncke)" <evyncke@cisco.com> Fri, 30 June 2023 09:17 UTC

Return-Path: <evyncke@cisco.com>
X-Original-To: int-area@ietfa.amsl.com
Delivered-To: int-area@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id BBA3CC151099; Fri, 30 Jun 2023 02:17:15 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -9.593
X-Spam-Level:
X-Spam-Status: No, score=-9.593 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIMWL_WL_MED=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_MSPIKE_H5=0.001, RCVD_IN_MSPIKE_WL=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com header.b="a4kgQYSx"; dkim=pass (1024-bit key) header.d=cisco.com header.b="D7mOCNBd"
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id bJtiZpzRWlOT; Fri, 30 Jun 2023 02:17:11 -0700 (PDT)
Received: from alln-iport-4.cisco.com (alln-iport-4.cisco.com [173.37.142.91]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 033E9C15152F; Fri, 30 Jun 2023 02:17:10 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=18319; q=dns/txt; s=iport; t=1688116631; x=1689326231; h=from:to:cc:subject:date:message-id:references: in-reply-to:mime-version; bh=Ezv2L8Rzjv0pUVQOnGB9l+iYeoqNEZwgyxgvbrViwu4=; b=a4kgQYSxBxg8+Jlk8ICYOMLVFva0v2ZfF8UAkM+yX4Pvdq7lzBgUtWJc bsoagjmv9ZUfv4i6s4j1sttNyPrVj18eEF8O8F5Pe81Vfyfoqy5Xantnc wblHECv9CtjvQx8TXAyojfNvV+cVy6ZGdxS3OcU5KJPUUt+s64b4lQUnK Q=;
X-IPAS-Result: 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
IronPort-PHdr: A9a23:2Gow5R8M8nlleP9uWO7oyV9kXcBvk7zwOghQ7YIolPcSNK+i5J/le kfY4KYlgFzIWNDD4ulfw6rNsq/mUHAd+5vJrn0YcZJNWhNEwcUblgAtGoiEXGXwLeXhaGoxG 8ERHER98SSDOFNOUN37e0WUp3Sz6TAIHRCqOBRkIO/2F6bZjt+80Ka5/JiAKwlNjSC2NKt7N w7+7R2Er9Qfm4JkNqc3x1PFo2AdfeNQyCIgKQeYng334YG7+5sLzg==
IronPort-Data: A9a23:2Dr8hKJAsNLGrStiFE+RxZUlxSXFcZb7ZxGr2PjKsXjdYENS02RTz zAeWG6AO/3bZ2b1LtwiO4jio09S65aAydIyGQod+CA2RRqmiyZq6fd1j6vUF3nPRiEWZBs/t 63yUvGZcIZsCCW0Si6FatANl1EkvU2zbuS6ULes1hxZH1c+E39/0ko7wobVv6Yx6TSHK1LV0 T/Ni5W31G+Ng1aY5UpNtspvADs21BjDkGtwUm4WPJinj3eC/5UhN6/zEInqR5fOria4KcbhL wrL5OnREmo0ZH7BAPv9+lrwWhVirrI/oWFih1IOM5VOjCSuqQQZyrYWGfxHM35xjhGkhf9N6 8pii5CJHFJB0q3kwIzxUjFRFyV4eKZB4rKCez60sNeYyAvNdH6EL/dGVR5te9ZGvL8sRzgVq JT0KxhVBvyHr++o0bSwSeREjcU4J86tN4Qa0p1l5WiDUah4Gs2eHs0m4/dcjScTvtBlPMzeZ vgIaypDVR3ZYw12bwJ/5JUWxbf02SaXnydjgFOTue8++WXa5A18zLarN8DaEvSPTN5Mg0uwp 2/a8SL+GB5yCTCE4TOB9nTpjejVkGahHokTD7a/sPVthTV/21D/FjU9TUuWjP/i0HeYXvZyM WMo2TUBk6QLoRnDosbGYzW0p3uNvxg5UtVWEvEn5Azl9kYyy1vHboTjZmMfAOHKpPPaVhRxj A/Uw4+B6ShH9ezLFCPMrt94uBvvYUAowXk+iTjopOfvy/bquoU6iB6noj1LT/Pt0oad9d0dP 1m3QMUWjrEXi4sA0L+2uAqBiDO3rZ+PRQkwjuk2Yo5Hxl4nDGJGT9X3gbQ+0RqmBNrBJrVml CRc8/VyFMhUUfmweNWlGY3h5o2B6fefKyH7ilVyBZQn/DnF0yf9LdAIvmoieBw2bp1sldrVj Kn751s5CHh7YiPCUEOLS9nZ5zkClPK5To21Cpg4kPIXOMArHON4wM2eTRfAgz+y+KTduao+I pycOd29FmoXDL8P8dZFb7l17FPf/QhnnTm7bcmil3yPiOPODFbLEu1tGAXVMYgEAFas/V+9H yB3bZXakn2ykYTWP0HqzGLkBQpUdyVgW8up+6S6tIere2JbJY3oMNeIqZsJcI1+lKMTneDNl kxRkGcCoLYjrRUr8Tm3V00=
IronPort-HdrOrdr: A9a23:ejHo76NSB0z+iMBcT2j155DYdb4zR+YMi2TDiHoRdfUFSKKlfp 6V88jzjSWE9wr5OEtLpTiBUJPwJk80hqQFn7X5XI3SEDUO3VHJEGgM1/qY/9SNIVyaygcZ79 YdT0EcMqy+MbEZt7eB3ODQKb9Jq7X3k9HLuQ6d9QYRcegAUdAH0+4NMHfiLqQAfng+OXNWLu v52iNAnVedUEVSSv7+KmgOXuDFqdGOvonhewQ6Cxku7xTLpS+06ZbheiLonys2Yndq+/MP4G LFmwv26uGIqPeg0CLR0GfV8tB/hMbh8N1eH8aB4/JlagkEyzzYJ7iJaYfy+Qzdk9vfrGrCV+ O85CvICv4DqU85uFvF5ycFlTOQiQrGoEWSuGNwyUGT0fARAghKRfaoQeliA0DkA41KhqAl7E oAtVjpxKZ/HFfOmj/w6MPPUAwvnk2ooWA6mepWlHBHV5ACAYUh5rD30XklWavoJhiKoLwPAa 1rFoXR9fxWeVSVYzTQuXRu2sWlWjA2Eg2dSkYPt8SJ23wO9UoJgncw1YgahDMN5Zg9Q55L66 DNNblpjqhHSosTYbhmDOkMTMOrAijGQA7KMmiVPVP7fZt3cU7lutry+vE49euqcJsHwN87n4 nASkpRsSood0fnGaS1ret2G9D2MRKAtBjWu7VjDsJCy8/BrZLQQFi+dGw=
X-Talos-CUID: 9a23:kFhkSGNpraf9eu5DczF32WMSQZocVHj54W3/H2ynJlhlcejA
X-Talos-MUID: 9a23:b/t/rgxF/SCXGKTBj3sbCJHhTr+aqKD/GGM1gb4ngcmFBz1yKxukhS23UrZyfw==
X-IronPort-Anti-Spam-Filtered: true
Received: from alln-core-2.cisco.com ([173.36.13.135]) by alln-iport-4.cisco.com with ESMTP/TLS/DHE-RSA-SEED-SHA; 30 Jun 2023 09:17:09 +0000
Received: from alln-opgw-4.cisco.com (alln-opgw-4.cisco.com [173.37.147.252]) by alln-core-2.cisco.com (8.15.2/8.15.2) with ESMTPS id 35U9H9WB023739 (version=TLSv1.2 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=OK); Fri, 30 Jun 2023 09:17:09 GMT
Authentication-Results: alln-opgw-4.cisco.com; dkim=pass (signature verified) header.i=@cisco.com; spf=Pass smtp.mailfrom=evyncke@cisco.com; dmarc=pass (p=quarantine dis=none) d=cisco.com
X-IronPort-AV: E=Sophos;i="6.01,170,1684800000"; d="scan'208,217";a="3672831"
Received: from mail-dm6nam10lp2100.outbound.protection.outlook.com (HELO NAM10-DM6-obe.outbound.protection.outlook.com) ([104.47.58.100]) by alln-opgw-4.cisco.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 30 Jun 2023 09:17:09 +0000
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=f2yqc69Vxdpdon8bF17z1XTExCI1LHl3x8K0M2RQE6kXSu/bSe9uaMRGQ1bVlsQy8uLpaqGXHLmIdsCfFDFRPqixOaiNWO/X60hAkwjS21zd6zo476D03mhHSQNFskYnHpxnDI8uMk8iSIP24pwbxtcncaSQbvYX5UqE06QgJ4AlROvGpUFmUdAz0rEfW0KTmJg+s8KNn2W9Af1QeqJNPX3Hy8akTcchh0ExcJC10PeIxVaY5u/8r4fsZCxg1XcqiCrAzGgNALS1G7a2pH0hLLgJS74PKaV0cmA2pk9yDuIWzD5IednCuI+7szb7SxFLgP7ByeyAEa64Y3BNbRRsRg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=Ezv2L8Rzjv0pUVQOnGB9l+iYeoqNEZwgyxgvbrViwu4=; b=l7Xpp/gLVNzm12uxseWS8b8YGBCuS/ygDEE1xxIl1eH1pPjUMX+2e1dFTbK5U8agAfsKzGxMwTpEH4T0DLz3HuqmCx1H97sK1r9R67DcpjX9VmcvLF92yUB43vQ3lFUxd2gNMLJRTfOLvZXmMMvPpf5ZD+e6C/pJLhIbQg1fKoCVKKbwbh0EhTlj8CSGMiDy8yzHSk9nGu3d7PK8c4XPBqOVY8raYw7NhoXx80n9rY2q03vL+K1Bj2ouKVK0Udx9ZPviFv7xLOYdhPsnQa2BFg/rmgsXp0cnVUJQJM8CIkpeECm5TzZDWB2cXIUf+ysLU4MNpgj8aE6LQatfyQC5eA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cisco.com; dmarc=pass action=none header.from=cisco.com; dkim=pass header.d=cisco.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=Ezv2L8Rzjv0pUVQOnGB9l+iYeoqNEZwgyxgvbrViwu4=; b=D7mOCNBd7jiDFpLiKR00PZpZMCYxZSGxyscps0Spoh8jRTLXPsrixtK6OqHg6YyG0uxN69kt1vuz0RgvgzueiKAqoUg7xFmtUJbgJIIM54ejDyNTgr2TNPHo/YDcqpq656u13ZeDtEI/lnmf+CUOV8R+PVH7EHomvhhmbHA9ZvQ=
Received: from PH0PR11MB4966.namprd11.prod.outlook.com (2603:10b6:510:42::21) by DM4PR11MB5296.namprd11.prod.outlook.com (2603:10b6:5:393::22) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6544.19; Fri, 30 Jun 2023 09:17:07 +0000
Received: from PH0PR11MB4966.namprd11.prod.outlook.com ([fe80::6098:a11f:49e5:c244]) by PH0PR11MB4966.namprd11.prod.outlook.com ([fe80::6098:a11f:49e5:c244%4]) with mapi id 15.20.6544.019; Fri, 30 Jun 2023 09:17:07 +0000
From: "Eric Vyncke (evyncke)" <evyncke@cisco.com>
To: Tommy Pauly <tpauly=40apple.com@dmarc.ietf.org>, Erik Kline <ek.ietf@gmail.com>
CC: MASQUE <masque@ietf.org>, "int-area@ietf.org" <int-area@ietf.org>
Thread-Topic: [Int-area] draft-pauly-intarea-proxy-config-pvd-00
Thread-Index: AQHZqgEV4oS5PgfLqk6bgLCtHT8c1q+hPGiAgACs9gCAAUtvgA==
Date: Fri, 30 Jun 2023 09:17:07 +0000
Message-ID: <50CCA922-E433-443B-9F40-951226BEE0ED@cisco.com>
References: <168789284483.46705.12480222689934893445@ietfa.amsl.com> <2093A4EB-BA72-405F-8585-38BA7A780C02@apple.com> <CAMGpriWy4zJUhP7vxLD6g=P3yDPTq3MeDPF4NBa3uqhJU6dPiw@mail.gmail.com> <11612CCB-BEC3-4A03-9020-84D7D192C9F8@apple.com>
In-Reply-To: <11612CCB-BEC3-4A03-9020-84D7D192C9F8@apple.com>
Accept-Language: fr-BE, en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/16.73.23052700
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: PH0PR11MB4966:EE_|DM4PR11MB5296:EE_
x-ms-office365-filtering-correlation-id: 5f69981e-8069-4a9e-266b-08db794ac71b
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: DKPJXCHVwCiawkeTzVkJQnTkRN3fQDjD/8RsOdUGemhwO0LrxwiXmJD8RgCPw23oPQfC5sQj5uZk5tvrN03TwZH3mKGIhoxRnzMLJ+lRkC/kcNYAJwGwd+Eu3mPAnBSlHkQl8tlsPhkupgT5XQhU3nbMwWt7/hR2yP9wKBInIXkpknELLPY9ZkfwfjtIxVM9+EPxSW69XNpFQ4nD8YDSmYnh1SvZz+/iEW2e3+kxsh0Y5N7hubFesqOlEg9k1Zs51chxJIR7R52PLstQoV3ADElPmDjTAre0AAKWTjJXdyui3u9GEOyaShAfTjRgDqL918LuiWZOGzNIVpYJa9gd608MJtKpzWWZHutAQk6vSp+x3t2KuHalTDhhGnqNyA2HiBlZeECSbT3F1k0Jil5MtXv/PQbDlHuIdisoWnioYa+TA97KNKredaeczWKb0k1Xy8dQglMhAQX3YVBa5z16pF52NmZ5A42c4W004lezjxxD5osbRKiKhFmSQVhh5cU6H+ozNzR6uhQmIYVMCOWxN88kiLHBWE2o5a40SG57GUJNUl/xC6JsQvbMkD98f07SUTUguVzqTmDy9nlLMwgVe8R1x6LiBU4LxKWmVW0VAqz3zQujj+KBZbY/eMqTU0uweWxwS2EdTa+N0Seu2VSRvGjrrBBRPkPsS1xbHHWNf42CKsrUibMX0Z/7dTIxY3pi
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:PH0PR11MB4966.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230028)(39860400002)(136003)(366004)(346002)(376002)(396003)(451199021)(83380400001)(38070700005)(2616005)(2906002)(166002)(122000001)(38100700002)(36756003)(8936002)(8676002)(110136005)(5660300002)(86362001)(71200400001)(54906003)(966005)(6512007)(41300700001)(66946007)(66556008)(66476007)(66446008)(64756008)(4326008)(76116006)(91956017)(316002)(6486002)(33656002)(478600001)(186003)(66899021)(53546011)(6506007)(21615005)(45980500001); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_50CCA922E433443B9F40951226BEE0EDciscocom_"
MIME-Version: 1.0
X-OriginatorOrg: cisco.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: PH0PR11MB4966.namprd11.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 5f69981e-8069-4a9e-266b-08db794ac71b
X-MS-Exchange-CrossTenant-originalarrivaltime: 30 Jun 2023 09:17:07.7658 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: mSeScyffPXmIN1ZN1YNTg05cfst/ewtADurmu3CY/NyeRJnwy9pBbrApE1HcVkF8CAaXUNu5s5X33OyT9c+srw==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM4PR11MB5296
X-Outbound-SMTP-Client: 173.37.147.252, alln-opgw-4.cisco.com
X-Outbound-Node: alln-core-2.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/int-area/3iwaRj1OpZFNVyLfAkWm7VMclqA>
Subject: Re: [Int-area] draft-pauly-intarea-proxy-config-pvd-00
X-BeenThere: int-area@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: IETF Internet Area WG Mailing List <int-area.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/int-area>, <mailto:int-area-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/int-area/>
List-Post: <mailto:int-area@ietf.org>
List-Help: <mailto:int-area-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/int-area>, <mailto:int-area-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 30 Jun 2023 09:17:15 -0000

It does indeed seem cleaner ;-)

From: Int-area <int-area-bounces@ietf.org> on behalf of Tommy Pauly <tpauly=40apple.com@dmarc.ietf.org>
Date: Thursday, 29 June 2023 at 17:32
To: Erik Kline <ek.ietf@gmail.com>
Cc: MASQUE <masque@ietf.org>, "int-area@ietf.org" <int-area@ietf.org>
Subject: Re: [Int-area] draft-pauly-intarea-proxy-config-pvd-00

Yes, it is an interesting outcome — but I think that in the same was that a VPN interface is a PvD, a proxy configuration that can tunnel traffic (particularly in the case of CONNECT-IP proxies that support passing any and all IP traffic) is indeed a PvD with it’s own configuration.

Rather than having MASQUE proxies define yet another mechanism for communicating DNS zones and split DNS configs, I’m proposing we use the already-defined HTTP JSON for PvDs here. Seemed like the cleanest answer =)

Tommy


On Jun 28, 2023, at 10:11 PM, Erik Kline <ek.ietf@gmail.com> wrote:

<no hats>

Looks like an interesting proposal, and it raised an interesting point: that proxies can be provisioning domains unto themselves (this hadn't exactly occurred to me before, but makes sense).

Looking forward to more discussion.

Thanks,
-ek

On Wed, Jun 28, 2023 at 1:42 PM Tommy Pauly <tpauly=40apple.com@dmarc.ietf.org<mailto:40apple.com@dmarc.ietf.org>> wrote:
Hello INTAREA and MASQUE,

I wanted to share a new draft (https://www.ietf.org/archive/id/draft-pauly-intarea-proxy-config-pvd-00.html) that uses Provisioning Domains (from intarea-produced RFC 8801) to:

- Discover URLs (and URL templates) of HTTP proxies such as MASQUE proxies that are provided by a network. This allows ISP and carrier networks to advertise proxies they support, which is useful for clients to learn about proxies they could use a first hop of a chain of privacy proxies, or for solutions like AT-SSS in 3GPP.
- Associate a PvD with an HTTP proxy to learn which subset of domains it might support, and other related proxies. This allows proxies to support “split DNS” configurations.

Note that this would allow us to have a standard way to replace some of the functionality that WPAD and PAC files are used for otherwise.

I’d like to present this at IETF 117 to both the INTAREA and MASQUE groups, if possible.

Please take a read; your comments are appreciated!

Best,
Tommy


Begin forwarded message:


A new version of I-D, draft-pauly-intarea-proxy-config-pvd-00.txt
has been successfully submitted by Tommy Pauly and posted to the
IETF repository.

Name: draft-pauly-intarea-proxy-config-pvd
Revision: 00
Title: Communicating Proxy Configurations in Provisioning Domains
Document date: 2023-06-27
Group: Individual Submission
Pages: 10
URL:            https://www.ietf.org/archive/id/draft-pauly-intarea-proxy-config-pvd-00.txt
Status:         https://datatracker.ietf.org/doc/draft-pauly-intarea-proxy-config-pvd/
Html:           https://www.ietf.org/archive/id/draft-pauly-intarea-proxy-config-pvd-00.html
Htmlized:       https://datatracker.ietf.org/doc/html/draft-pauly-intarea-proxy-config-pvd


Abstract:
  This document defines a mechanism for accessing provisioning domain
  information associated with a proxy, such a list of DNS zones that
  are accessible via an HTTP CONNECT proxy.  It also defines a way to
  enumerate proxies that are associated with a known provisioning
  domain.

Discussion Venues

  This note is to be removed before publishing as an RFC.

  Source for this draft and an issue tracker can be found at
  https://github.com/tfpauly/privacy-proxy.




The IETF Secretariat


_______________________________________________
Int-area mailing list
Int-area@ietf.org<mailto:Int-area@ietf.org>
https://www.ietf.org/mailman/listinfo/int-area