[IPsec] Suresh Krishnan's No Objection on draft-ietf-ipsecme-split-dns-14: (with COMMENT)

Suresh Krishnan <suresh@kaloom.com> Tue, 20 November 2018 22:20 UTC

Return-Path: <suresh@kaloom.com>
X-Original-To: ipsec@ietf.org
Delivered-To: ipsec@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 6F9E9130E41; Tue, 20 Nov 2018 14:20:12 -0800 (PST)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Suresh Krishnan <suresh@kaloom.com>
To: The IESG <iesg@ietf.org>
Cc: draft-ietf-ipsecme-split-dns@ietf.org, David Waltermire <david.waltermire@nist.gov>, ipsecme-chairs@ietf.org, david.waltermire@nist.gov, ipsec@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 6.89.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <154275241245.29803.13710690866636967430.idtracker@ietfa.amsl.com>
Date: Tue, 20 Nov 2018 14:20:12 -0800
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipsec/NNZP7A8-rUKs0wRciA0CHKxNfQA>
Subject: [IPsec] Suresh Krishnan's No Objection on draft-ietf-ipsecme-split-dns-14: (with COMMENT)
X-BeenThere: ipsec@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Discussion of IPsec protocols <ipsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipsec>, <mailto:ipsec-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipsec/>
List-Post: <mailto:ipsec@ietf.org>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 20 Nov 2018 22:20:12 -0000

Suresh Krishnan has entered the following ballot position for
draft-ietf-ipsecme-split-dns-14: No Objection

When responding, please keep the subject line intact and reply to all
email addresses included in the To and CC lines. (Feel free to cut this
introductory paragraph, however.)


Please refer to https://www.ietf.org/iesg/statement/discuss-criteria.html
for more information about IESG DISCUSS and COMMENT positions.


The document, along with other ballot positions, can be found here:
https://datatracker.ietf.org/doc/draft-ietf-ipsecme-split-dns/



----------------------------------------------------------------------
COMMENT:
----------------------------------------------------------------------

* Sections 3.1 and 7

I have a hard time seeing why the length of the INTERNAL_DNS_DOMAIN attribute
would ever be zero. Do you expect someone to send an empty attribute? If not,
the attribute definition should be updated in Section 7.

* Meta comment

Since the draft needs and uses a lot of example domain names, I would suggest
using a reserved TLD (e.g. ".example") from BCP32 to build up the examples
instead of using registered domain names.