Re: [dnsext] draft-mohan-dns-query-xml-00.txt

Mohan Parthasarathy <suruti94@gmail.com> Thu, 29 September 2011 19:54 UTC

Return-Path: <dnsext-bounces@ietf.org>
X-Original-To: namedroppers-archive-gleetwall6@lists.ietf.org
Delivered-To: ietfarch-namedroppers-archive-gleetwall6@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 79E6321F8C73; Thu, 29 Sep 2011 12:54:17 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1317326057; bh=oYLAbSEcG1S2UvPvRRf8xgXJYOEi54DgCR3L5p5cfFc=; h=MIME-Version:In-Reply-To:References:Date:Message-ID:From:To:Cc: Subject:List-Id:List-Unsubscribe:List-Archive:List-Post:List-Help: List-Subscribe:Content-Type:Content-Transfer-Encoding:Sender; b=IXLyK03glwiQqIuszUcR4sGNpe3DCJhrBzQ4c6zKZEVd/XJ+l8V5m8n3zLZe2PNKh 2UNz/JTbjYPF7NORgCR2DTrRfY7cCRPbYxcC4uK5Og6RgzOCrPuFPsI52+JVhKYd87 og/Auof9IHpL5Mx31gcwi6Sk85ZMb7NRgOTbH1GQ=
X-Original-To: dnsext@ietfa.amsl.com
Delivered-To: dnsext@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3A06F21F8C73 for <dnsext@ietfa.amsl.com>; Thu, 29 Sep 2011 12:54:16 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.599
X-Spam-Level:
X-Spam-Status: No, score=-3.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Qi05fXHwejHh for <dnsext@ietfa.amsl.com>; Thu, 29 Sep 2011 12:54:15 -0700 (PDT)
Received: from mail-pz0-f50.google.com (mail-pz0-f50.google.com [209.85.210.50]) by ietfa.amsl.com (Postfix) with ESMTP id 5C46121F8C6F for <dnsext@ietf.org>; Thu, 29 Sep 2011 12:54:15 -0700 (PDT)
Received: by pzk37 with SMTP id 37so2462490pzk.9 for <dnsext@ietf.org>; Thu, 29 Sep 2011 12:57:07 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type:content-transfer-encoding; bh=DXZF220On3CLejJIfMPqTPI4cuDEGvjNI85UwUHK6IE=; b=ntzuQIjPXmHWSjFQX8UozZoi9xnv3Z6lv1acU2tOBxNxj3LGH+Nv7HUd/CwR+UvR1R jB4SsA3jkEXwO7899BSlri6GQTWecByonFN54J5eYFStTIasVtwCl/c+mKZG0pxkzLz8 y9DFKaEkc+SG+xfCediSFKWLAsPdoml7JeLD0=
MIME-Version: 1.0
Received: by 10.68.0.167 with SMTP id 7mr40168151pbf.106.1317326226058; Thu, 29 Sep 2011 12:57:06 -0700 (PDT)
Received: by 10.68.46.200 with HTTP; Thu, 29 Sep 2011 12:57:05 -0700 (PDT)
In-Reply-To: <alpine.LSU.2.00.1109291153110.30178@hermes-2.csi.cam.ac.uk>
References: <CACU5sDnBx5AijEgFXKNPjtcVdtBnBJamsn-f_ye0Jm3TQq0mvw@mail.gmail.com> <CA+9kkMAozdS=F8FF5SRz0gTCfz7nXch578ZtU7pi25NYwB=8-Q@mail.gmail.com> <alpine.LSU.2.00.1109291153110.30178@hermes-2.csi.cam.ac.uk>
Date: Thu, 29 Sep 2011 12:57:05 -0700
Message-ID: <CACU5sDnX0XYjdWjwSrcL5zD8DC0KTsMJU2+O1yMj4KYeqnNXZQ@mail.gmail.com>
From: Mohan Parthasarathy <suruti94@gmail.com>
To: Tony Finch <dot@dotat.at>
Cc: Paul Vixie <vixie@isc.org>, dnsext@ietf.org
Subject: Re: [dnsext] draft-mohan-dns-query-xml-00.txt
X-BeenThere: dnsext@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: DNS Extensions working group discussion list <dnsext.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsext>, <mailto:dnsext-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dnsext>
List-Post: <mailto:dnsext@ietf.org>
List-Help: <mailto:dnsext-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsext>, <mailto:dnsext-request@ietf.org?subject=subscribe>
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
Sender: dnsext-bounces@ietf.org
Errors-To: dnsext-bounces@ietf.org

On Thu, Sep 29, 2011 at 4:04 AM, Tony Finch <dot@dotat.at> wrote:
> Ted Hardie <ted.ietf@gmail.com> wrote:
>>
>> Why not re-use the syntax of RFC4501 for the query? [...] It's also not
>> clear why you need an XML-based representation, rather than using a
>> mime-type like that set out in RFC 4027 (which uses detached domain name
>> information as set out in RFC 2540).  Even if those need updating, it's
>> not clear to me what you're gaining with the use of XML here.
>
> I agree with these suggestions and questions.
>
> I don't understand the interoperability argument. The software that will
> be producing and consuming this data is DNS software that already has
> parsers for binary DNS data, and doesn't have serializers or parsers for
> XML. Binary data is also much more friendly for mobile endpoints.
> Interoperability with non-DNS software should be handled by a separate
> gateway that doesn't put a disgustingly wasteful pessimization in the fast
> path.
>

We started with XML and then came JSON and we have the third format
for consideration :-) We should just use the right one at the end. DNS software
is going to use a different API to retrieve the HTTP response which hopefully
will work fine when it sees a new MIME type. How about if I am using wireshark ?
Would XML/JSON make a difference until someone writes a plugin ? How about
the server side plugin that wants to encode the response ? Would one be easier
over the other. Perhaps, there are other factors.


> Is this draft going to specify how to get the complete DNSSEC validation
> chain, or is that going to be specified elsewhere? Google Chrome already
> implements a format for embedding validation chains in X.509 certificates
> which is binary but sadly does not use standard DNS message format.
>
Very good point. As written, it just encodes a single response. But it
should be easy
to extend this ask for a "chain" and the server plugin can build a
chain (to a known
trust anchor that has to be communicated ? ) and return it. We reduce
a lot of latency.
Is that what you meant ?

-mohan

> Tony.
> --
> f.anthony.n.finch  <dot@dotat.at>  http://dotat.at/
> Viking: Southerly 4 or 5, occasionally 6 in northeast. Moderate. Mainly fair.
> Good, occasionally poor.
>
_______________________________________________
dnsext mailing list
dnsext@ietf.org
https://www.ietf.org/mailman/listinfo/dnsext