Re: [dnsext] draft-diao-aip-dns

Mark Andrews <marka@isc.org> Tue, 19 June 2012 00:01 UTC

Return-Path: <dnsext-bounces@ietf.org>
X-Original-To: namedroppers-archive-gleetwall6@lists.ietf.org
Delivered-To: ietfarch-namedroppers-archive-gleetwall6@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id CF8FE11E80F1; Mon, 18 Jun 2012 17:01:19 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1340064079; bh=HlS0hkkz1p+ufPuOViFbJEfFmDQzLqhCYajgGoTpP2c=; h=To:From:References:In-reply-to:Date:Message-Id:Cc:Subject:List-Id: List-Unsubscribe:List-Archive:List-Post:List-Help:List-Subscribe: MIME-Version:Content-Type:Sender; b=foJbFezh+aVA4vjspl6YUC/g3xCUnKapWmrtSKCVbqarolaTk9ige/Qd6542nqNWA /1iy9R8Lu2T5XipBIEmxMFWLkSryQR/1GYXGwxZ5xx1DccYBAwE++q6lQk3Alxqvyt wyyjp24Uxf1655nwmk7KPa4BtWSULXkaAvpdnm5E=
X-Original-To: dnsext@ietfa.amsl.com
Delivered-To: dnsext@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EFCE211E80F1 for <dnsext@ietfa.amsl.com>; Mon, 18 Jun 2012 17:01:18 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.699
X-Spam-Level:
X-Spam-Status: No, score=-1.699 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, J_CHICKENPOX_23=0.6, MIME_8BIT_HEADER=0.3]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 52bnSdpOmIQG for <dnsext@ietfa.amsl.com>; Mon, 18 Jun 2012 17:01:18 -0700 (PDT)
Received: from mx.ams1.isc.org (mx.ams1.isc.org [IPv6:2001:500:60::65]) by ietfa.amsl.com (Postfix) with ESMTP id 0427511E80F0 for <dnsext@ietf.org>; Mon, 18 Jun 2012 17:01:18 -0700 (PDT)
Received: from bikeshed.isc.org (bikeshed.isc.org [IPv6:2001:4f8:3:d::19]) (using TLSv1 with cipher DHE-RSA-CAMELLIA256-SHA (256/256 bits)) (Client CN "mail.isc.org", Issuer "RapidSSL CA" (not verified)) by mx.ams1.isc.org (Postfix) with ESMTPS id 4762F5F98E6; Tue, 19 Jun 2012 00:01:03 +0000 (UTC) (envelope-from marka@isc.org)
Received: from drugs.dv.isc.org (unknown [IPv6:2001:470:1f00:820:3429:664b:266e:51bf]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by bikeshed.isc.org (Postfix) with ESMTPSA id 2DE30216C33; Tue, 19 Jun 2012 00:01:01 +0000 (UTC) (envelope-from marka@isc.org)
Received: from drugs.dv.isc.org (localhost [127.0.0.1]) by drugs.dv.isc.org (Postfix) with ESMTP id 13AE921B8A3F; Tue, 19 Jun 2012 10:00:40 +1000 (EST)
To: Ondřej Surý <ondrej.sury@nic.cz>
From: Mark Andrews <marka@isc.org>
References: <alpine.LSU.2.00.1206171731130.18692@hermes-2.csi.cam.ac.uk> <BF001997-32AC-4221-AF0F-B529D9127EDD@nic.cz>
In-reply-to: Your message of "Mon, 18 Jun 2012 14:58:31 +0200." <BF001997-32AC-4221-AF0F-B529D9127EDD@nic.cz>
Date: Tue, 19 Jun 2012 10:00:40 +1000
Message-Id: <20120619000041.13AE921B8A3F@drugs.dv.isc.org>
Cc: teacherdddd@yahoo.com.cn, dnsext@ietf.org, 644247110@qq.com, diaoyp@yahoo.com
Subject: Re: [dnsext] draft-diao-aip-dns
X-BeenThere: dnsext@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: DNS Extensions working group discussion list <dnsext.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsext>, <mailto:dnsext-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dnsext>
List-Post: <mailto:dnsext@ietf.org>
List-Help: <mailto:dnsext-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsext>, <mailto:dnsext-request@ietf.org?subject=subscribe>
MIME-Version: 1.0
Content-Type: multipart/mixed; boundary="===============1433759660005832141=="
Sender: dnsext-bounces@ietf.org
Errors-To: dnsext-bounces@ietf.org

In message <BF001997-32AC-4221-AF0F-B529D9127EDD@nic.cz>, =?utf-8?Q?Ond=C5=99ej
_Sur=C3=BD?= writes:
> Hi,
> 
> thanks Tony for pointing that out...
> 
> On 17. 6. 2012, at 19:01, Tony Finch wrote:
> 
> > So this "DNS Extension for Autonomous Internet" caught my eye. There are
> > clearly a number of autonomy-related requirements that the DNS does not
> > satisfy, such as private/internal names and ad-hoc networking. These are
> > currently satisfied by working outside the architecture - BIND's views 
> and
> > multicast DNS respectively.
> > 
> > However this draft is not about any of that. It appears to be proposing 
> a
> > technical workaround for dissatisfaction with ICANN's management of the
> > DNS namespace.
> 
> I am not so sure about the motivations, but I see this draft as dangerous
> precedent.  Unified DNS tree was and is an important building block of the
> Internet and standardizing DNS-split would mean the end of the Internet
> as we know it.

The same entered name should get to the same resource even if the
resource does not resolve everywhere.  This doesn't meet this
property.

Additionally RFC 1535 shows why this approach is bad.  This would
codify the flaw indentified in RFC 1535.

Classic split DNS is additive with additional names, address, etc.
added to the public view to create the private view.


> > But it seems to me that none of this is necessary: all it is doing is 
> shifting the namespace down a level.
> 
> 
> Exactly.  And then it would be just a mess - every country would create 
> it's own Internet.
> 
> > That is you can get a similar result [...] using existing technologies.
> 
> 
> +1
> 
> not that I promote the usage of existing tools for Internet censorship,
> but at least those are just tools, and not the justification to split
> the Internet.
> 
> Last, but not least, we (IETF) should produce technical documents
> and not political.  This is quite nice example of a document which
> (in my view) puts priorities of national states over the openness
> and overall compatibility of the Internet.
> 
> O.
> --
>  Ondřej Surý -- Chief Science Officer
>  -------------------------------------------
>  CZ.NIC, z.s.p.o.    --    Laboratoře CZ.NIC
>  Americka 23, 120 00 Praha 2, Czech Republic
>  mailto:ondrej.sury@nic.cz    http://nic.cz/
>  tel:+420.222745110       fax:+420.222745112
>  -------------------------------------------
> 
> _______________________________________________
> dnsext mailing list
> dnsext@ietf.org
> https://www.ietf.org/mailman/listinfo/dnsext

-- 
Mark Andrews, ISC
1 Seymour St., Dundas Valley, NSW 2117, Australia
PHONE: +61 2 9871 4742                 INTERNET: marka@isc.org
_______________________________________________
dnsext mailing list
dnsext@ietf.org
https://www.ietf.org/mailman/listinfo/dnsext