Re: Forgery Resistance phase #2

Olafur Gudmundsson <ogud@ogud.com> Tue, 29 July 2008 10:38 UTC

Return-Path: <owner-namedroppers@ops.ietf.org>
X-Original-To: ietfarch-namedroppers-archive-gleetwall6@core3.amsl.com
Delivered-To: ietfarch-namedroppers-archive-gleetwall6@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 00F023A69F3; Tue, 29 Jul 2008 03:38:36 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.946
X-Spam-Level:
X-Spam-Status: No, score=-0.946 tagged_above=-999 required=5 tests=[AWL=-0.451, BAYES_00=-2.599, FH_RELAY_NODNS=1.451, HELO_MISMATCH_COM=0.553, RDNS_NONE=0.1]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id b1mkD7XckXIo; Tue, 29 Jul 2008 03:38:35 -0700 (PDT)
Received: from psg.com (psg.com [IPv6:2001:418:1::62]) by core3.amsl.com (Postfix) with ESMTP id 278113A68F3; Tue, 29 Jul 2008 03:38:35 -0700 (PDT)
Received: from majordom by psg.com with local (Exim 4.69 (FreeBSD)) (envelope-from <owner-namedroppers@ops.ietf.org>) id 1KNmVD-0008zZ-Mj for namedroppers-data@psg.com; Tue, 29 Jul 2008 10:32:23 +0000
Received: from [66.92.146.20] (helo=stora.ogud.com) by psg.com with esmtps (TLSv1:AES256-SHA:256) (Exim 4.69 (FreeBSD)) (envelope-from <ogud@ogud.com>) id 1KNmV6-0008ya-5L for namedroppers@ops.ietf.org; Tue, 29 Jul 2008 10:32:21 +0000
Received: from Puki.ogud.com (nyttbox.md.ogud.com [10.20.30.4]) by stora.ogud.com (8.14.2/8.14.2) with ESMTP id m6TAVpsg032327; Tue, 29 Jul 2008 06:31:52 -0400 (EDT) (envelope-from ogud@ogud.com)
Message-Id: <200807291031.m6TAVpsg032327@stora.ogud.com>
X-Mailer: QUALCOMM Windows Eudora Version 7.1.0.9
Date: Tue, 29 Jul 2008 06:06:10 -0400
To: Paul Hoffman <paul.hoffman@vpnc.org>, namedroppers@ops.ietf.org
From: Olafur Gudmundsson <ogud@ogud.com>
Subject: Re: Forgery Resistance phase #2
In-Reply-To: <p0624080ac4b3bd80942b@[130.129.22.27]>
References: <200807281555.m6SFsxAO021711@stora.ogud.com> <p0624080ac4b3bd80942b@[130.129.22.27]>
Mime-Version: 1.0
Content-Type: text/plain; charset="iso-8859-1"; format="flowed"
Content-Transfer-Encoding: quoted-printable
X-Scanned-By: MIMEDefang 2.64 on 10.20.30.4
Sender: owner-namedroppers@ops.ietf.org
Precedence: bulk
List-ID: <namedroppers.ops.ietf.org>

At 14:18 28/07/2008, Paul Hoffman wrote:
>At 11:53 AM -0400 7/28/08, Ólafur Gu©£mundsson /DNSEXT
>  chair wrote:
>>Steps that resolvers can take to protect them self:
>>         Forgery Detection
>>         and react to forgery attempts.
>
>There is a glaring lack of footnote on that 
>second one. I have heard multiple suggestions in 
>the hallways this week. A bit more detail here would be appreciated.

yes it does, but this is a new area for DNS, suggestions are welcome.
The danger here is a that some possible fall backs might be worse
than doing nothing.

         Olafur



         Olafur


--
to unsubscribe send a message to namedroppers-request@ops.ietf.org with
the word 'unsubscribe' in a single line as the message text body.
archive: <http://ops.ietf.org/lists/namedroppers/>