Re: [IPsec] Alexey Melnikov's Discuss on draft-ietf-ipsecme-split-dns-14: (with DISCUSS)

Paul Wouters <pwouters@redhat.com> Mon, 19 November 2018 04:50 UTC

Return-Path: <pwouters@redhat.com>
X-Original-To: ipsec@ietfa.amsl.com
Delivered-To: ipsec@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 94D991277D2; Sun, 18 Nov 2018 20:50:33 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.901
X-Spam-Level:
X-Spam-Status: No, score=-6.901 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id UbopOnQMTVPN; Sun, 18 Nov 2018 20:50:32 -0800 (PST)
Received: from mx1.redhat.com (mx1.redhat.com [209.132.183.28]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6C096127332; Sun, 18 Nov 2018 20:50:32 -0800 (PST)
Received: from smtp.corp.redhat.com (int-mx04.intmail.prod.int.phx2.redhat.com [10.5.11.14]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by mx1.redhat.com (Postfix) with ESMTPS id AA10D3082A42; Mon, 19 Nov 2018 04:50:31 +0000 (UTC)
Received: from thinkpad.nohats.ca (ovpn-204-33.brq.redhat.com [10.40.204.33]) by smtp.corp.redhat.com (Postfix) with ESMTP id BD8B618EFA; Mon, 19 Nov 2018 04:50:27 +0000 (UTC)
To: Alexey Melnikov <aamelnikov@fastmail.fm>, The IESG <iesg@ietf.org>
Cc: draft-ietf-ipsecme-split-dns@ietf.org, David Waltermire <david.waltermire@nist.gov>, ipsecme-chairs@ietf.org, ipsec@ietf.org
References: <154247645671.15969.2304550137908278124.idtracker@ietfa.amsl.com>
From: Paul Wouters <pwouters@redhat.com>
Message-ID: <559e3d1d-ad44-ccd5-e3ed-2f2ac88facb9@redhat.com>
Date: Mon, 19 Nov 2018 11:50:24 +0700
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:60.0) Gecko/20100101 Thunderbird/60.2.1
MIME-Version: 1.0
In-Reply-To: <154247645671.15969.2304550137908278124.idtracker@ietfa.amsl.com>
Content-Type: text/plain; charset="utf-8"; format="flowed"
Content-Transfer-Encoding: 7bit
Content-Language: en-US
X-Scanned-By: MIMEDefang 2.79 on 10.5.11.14
X-Greylist: Sender IP whitelisted, not delayed by milter-greylist-4.5.16 (mx1.redhat.com [10.5.110.45]); Mon, 19 Nov 2018 04:50:31 +0000 (UTC)
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipsec/e-5cr0JF-qypTlUdTqhVc_8HJbA>
Subject: Re: [IPsec] Alexey Melnikov's Discuss on draft-ietf-ipsecme-split-dns-14: (with DISCUSS)
X-BeenThere: ipsec@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Discussion of IPsec protocols <ipsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipsec>, <mailto:ipsec-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipsec/>
List-Post: <mailto:ipsec@ietf.org>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 19 Nov 2018 04:50:33 -0000

On 2018-11-18 12:40 a.m., Alexey Melnikov wrote:
> ----------------------------------------------------------------------
> DISCUSS:
> ----------------------------------------------------------------------
>
> This is a well written document, so thank you for that.
> I've noticed that Benjamin already found typos that I found and raised one of
> the same questions, but I think this is important enough to be addressed before
> I recommend approval of this document. Specifically:
>
> In Section 3.1:
>
>     o  Domain Name (0 or more octets) - A Fully Qualified Domain Name
>        used for Split DNS rules, such as "example.com", in DNS
>        presentation format and optionally using IDNA [RFC5890] for
>        Internationalized Domain Names.
>
> Do you mean A-label or U-label form here?


I thought it was obvious that we meant A-label. Why else refer to IDN if 
you would just put in U-label, but I'll add the A-label term.


Paul