Re: [Netconf] Benjamin Kaduk's Discuss on draft-ietf-netconf-zerotouch-25: (with DISCUSS and COMMENT)

Kent Watsen <kwatsen@juniper.net> Wed, 09 January 2019 20:06 UTC

Return-Path: <kwatsen@juniper.net>
X-Original-To: netconf@ietfa.amsl.com
Delivered-To: netconf@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2AE6B131032; Wed, 9 Jan 2019 12:06:19 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -5.254
X-Spam-Level:
X-Spam-Status: No, score=-5.254 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-4.553, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, KHOP_DYNAMIC=2, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=juniper.net
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id NTpwS3p4rsJW; Wed, 9 Jan 2019 12:06:16 -0800 (PST)
Received: from mx0b-00273201.pphosted.com (mx0b-00273201.pphosted.com [67.231.152.164]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 2C6E113101C; Wed, 9 Jan 2019 12:06:16 -0800 (PST)
Received: from pps.filterd (m0108160.ppops.net [127.0.0.1]) by mx0b-00273201.pphosted.com (8.16.0.27/8.16.0.27) with SMTP id x09K2qLm001784; Wed, 9 Jan 2019 12:06:10 -0800
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; h=from : to : cc : subject : date : message-id : references : in-reply-to : content-type : content-id : content-transfer-encoding : mime-version; s=PPS1017; bh=lch3B5HN6VhkcQYxZYybKurQ0+e1PNV9my5DwJmRM8c=; b=OfRPmFatkBjkynQs0XU18vQxCb+BcTKwkWS61Z1wSJxKxU/5+NGgE3slReMPEbT3jlHV 93T9A7a5qZs8lL5A4mGxlLaLoOSAjHnOC4WwbrYed6V1v0Ba7CtIkMqGnK/zA1fRxogy dONnVdqedM/aApzZYGIK+PBgn1LvB1heHIJJks2X57mB3tbVajcYlgJ71xMh9oRpi3pH WeD2KHwX+SNv+SRf8hQh6WGHlgTKjeopLlI6Q/JfTtojOqOLYE0OgpUaQm2jxHn1k1Ax k822yjRXNNUOc36R1uUfAxzYkBuRhPhWcbuAAx50DQnmSKWwO49bFb1XVg3rmCKxK15u GQ==
Received: from nam01-bn3-obe.outbound.protection.outlook.com (mail-bn3nam01lp2052.outbound.protection.outlook.com [104.47.33.52]) by mx0b-00273201.pphosted.com with ESMTP id 2pwm2fgfj4-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-SHA384 bits=256 verify=NOT); Wed, 09 Jan 2019 12:06:10 -0800
Received: from BYAPR05MB5416.namprd05.prod.outlook.com (20.177.184.221) by BYAPR05MB5127.namprd05.prod.outlook.com (20.177.231.21) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.1516.3; Wed, 9 Jan 2019 20:06:07 +0000
Received: from BYAPR05MB5416.namprd05.prod.outlook.com ([fe80::ccee:5d54:3370:e50b]) by BYAPR05MB5416.namprd05.prod.outlook.com ([fe80::ccee:5d54:3370:e50b%5]) with mapi id 15.20.1516.010; Wed, 9 Jan 2019 20:06:07 +0000
From: Kent Watsen <kwatsen@juniper.net>
To: Adam Roach <adam@nostrum.com>, Alexey Melnikov <aamelnikov@fastmail.fm>, Dave Crocker <dcrocker@bbiw.net>
CC: The IESG <iesg@ietf.org>, "draft-ietf-netconf-zerotouch@ietf.org" <draft-ietf-netconf-zerotouch@ietf.org>, "netconf-chairs@ietf.org" <netconf-chairs@ietf.org>, "netconf@ietf.org" <netconf@ietf.org>, Benjamin Kaduk <kaduk@mit.edu>
Thread-Topic: Benjamin Kaduk's Discuss on draft-ietf-netconf-zerotouch-25: (with DISCUSS and COMMENT)
Thread-Index: AQHUi5qky69pAtgeuk6GIUpsNSYi7qVz1VIAgCLBFICAB70FgIADj4qAgAJJm4CAAxXrAA==
Date: Wed, 9 Jan 2019 20:06:07 +0000
Message-ID: <DAC627AC-8453-41D2-B95C-BC25746E66C1@juniper.net>
References: <154390493154.31734.13025584839857369253.idtracker@ietfa.amsl.com> <F526DA60-77EC-45D6-ADE0-B345020A89BF@juniper.net> <20181230003002.GC57547@kduck.kaduk.org> <5DCD6C74-7918-45AB-BEA7-2C1A020B4411@juniper.net> <20190106050255.GJ28515@kduck.kaduk.org> <35A436B3-5D57-4015-A51E-5F9A1E349D31@juniper.net>
In-Reply-To: <35A436B3-5D57-4015-A51E-5F9A1E349D31@juniper.net>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/10.10.5.181209
x-originating-ip: [66.129.241.10]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; BYAPR05MB5127; 6:mEuuvupmE4R2i9sBT0CXc/aZ77NxuXFQ1ygsAv9QAnKRd6VDM3vIhBemiSEuJK6wy+t9yrWSFijLkF6rV/7pcM4A8zfmvFLp7iE3VdVg+MUAUkSpXNeAGVZsZ5WaUAh/ySAIGbqjtEEtbRHM9I96DvaLG+r83bjnx7XGN/PH2q6VbGt5RlGMkD6PzFSZ0xw2/eLjbWxsY6y9ofNttXbAklwO1HtlBguJzReVh/a8c9dAfa2/EPkeJ8Hffld0QUtGBQH2zYg7BCGLNCFYtHeeWLt1oKDretUdLML6hNXUU213/faQ9lCuHIhG55s9dMlbPciNaOV2+LWD+K2o7yA9dvSKoJNvBkMRNRG5f1pyWOWdOTzuMEEQdVuswbQftkigrp1qwUA2MS+rv5PjgmO/AZM963lSYzIR/ARx2QuMlevcWJ9g+unFn5yA9X+KkHCmruZ08QHlVhAx8D8YNz9dZg==; 5:CHJxkoIrS5DRo+SrQvK4y2ek2xJOIm4282jL6Fb6j8geWZYYQndCRdLhWBQ1FXrITal/2TSYDBQnKcsIr9p+3P18bF1EYP4Qry8PcwbABjKbro2VdvHL744vtVUMylWOG8uI1TZemZgEiTbHum92SLTs7N5K6816342c9ChI/kGdAEMWjiVkr48VjV/7rFlNYasgWKdNgMMIGRmHUihVJg==; 7:uNQjbE56+gLI5FM6oItHZFTLUW5TDqFHj+3CcB2Fy3qL1kvJSl74NLBXieSFnXdjKMaXJkiQpA9BjPlz8ubBS2Ptu6RUV2XOGDZdg88MnceAFzSnlYJnavls3CcxzwvVKdbAJyaIIsInaYA8E7dfIQ==
x-ms-exchange-antispam-srfa-diagnostics: SOS;
x-ms-office365-filtering-correlation-id: c3f1af60-3c7c-4c12-1d9d-08d6766de49a
x-ms-office365-filtering-ht: Tenant
x-microsoft-antispam: BCL:0; PCL:0; RULEID:(2390118)(7020095)(4652040)(8989299)(4534185)(4627221)(201703031133081)(201702281549075)(8990200)(5600109)(711020)(4618075)(2017052603328)(7153060)(7193020); SRVR:BYAPR05MB5127;
x-ms-traffictypediagnostic: BYAPR05MB5127:
x-microsoft-antispam-prvs: <BYAPR05MB5127D25DDD96147C14F29EE4A58B0@BYAPR05MB5127.namprd05.prod.outlook.com>
x-forefront-prvs: 0912297777
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(346002)(136003)(39860400002)(376002)(396003)(366004)(13464003)(199004)(189003)(26005)(66066001)(106356001)(53546011)(33656002)(561944003)(6506007)(97736004)(102836004)(53936002)(99286004)(2906002)(446003)(6246003)(476003)(81166006)(316002)(58126008)(7736002)(93886005)(110136005)(54906003)(305945005)(81156014)(186003)(8936002)(6306002)(11346002)(6512007)(4326008)(8676002)(2616005)(82746002)(14454004)(256004)(14444005)(71190400001)(68736007)(486006)(36756003)(25786009)(6116002)(3846002)(83716004)(6486002)(105586002)(86362001)(76176011)(6436002)(229853002)(478600001)(966005)(71200400001)(5660300001); DIR:OUT; SFP:1102; SCL:1; SRVR:BYAPR05MB5127; H:BYAPR05MB5416.namprd05.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1;
received-spf: None (protection.outlook.com: juniper.net does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam-message-info: 1n9tq75yF9Z/Ev+DTVlvjMF+XyRYAeHpOqFoeRwdPbmoU2ribavap/7W8WjUpn8CU1vk38DkLB+EIqv0LaYXdqWwpNdw7RFcfdjmZapwU6gBgcxtpPtQh6p76nf9Nqmp6BF9ffVlgDLvgRu9R8NL6If2AdtKCCfACXg0VCu6vQlUCCr8eoKXfpWf7fR5Jhp8XjstBRT7Z9odxSv+ZNdVVYV/x9Xy/06kaJIBkOUYcPRJ+xQDXpyQNoXKfbLTixcOTBI+GqZv9Z6C5lgOKiwFAhnU6SNPj137ieIhxakOxluvsJ0Q7pd+3xDSrdfV/Vjp
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: text/plain; charset="utf-8"
Content-ID: <6CF453463716A34C89D17F1ED2968DE8@namprd05.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: juniper.net
X-MS-Exchange-CrossTenant-Network-Message-Id: c3f1af60-3c7c-4c12-1d9d-08d6766de49a
X-MS-Exchange-CrossTenant-originalarrivaltime: 09 Jan 2019 20:06:07.7351 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: bea78b3c-4cdb-4130-854a-1d193232e5f4
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BYAPR05MB5127
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:, , definitions=2019-01-09_10:, , signatures=0
X-Proofpoint-Spam-Details: rule=outbound_spam_notspam policy=outbound_spam score=0 priorityscore=1501 malwarescore=0 suspectscore=0 phishscore=0 bulkscore=0 spamscore=0 clxscore=1011 lowpriorityscore=0 mlxscore=0 impostorscore=0 mlxlogscore=999 adultscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.0.1-1810050000 definitions=main-1901090163
Archived-At: <https://mailarchive.ietf.org/arch/msg/netconf/4AWXDxFyfFuxZ8ExOzSexg4WRDM>
Subject: Re: [Netconf] Benjamin Kaduk's Discuss on draft-ietf-netconf-zerotouch-25: (with DISCUSS and COMMENT)
X-BeenThere: netconf@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Network Configuration WG mailing list <netconf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/netconf>, <mailto:netconf-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/netconf/>
List-Post: <mailto:netconf@ietf.org>
List-Help: <mailto:netconf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/netconf>, <mailto:netconf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 09 Jan 2019 20:06:19 -0000

Gentle reminder to Dave, Alexey, and Adam wrt draft-ietf-dnsop-attrleaf.

Note: I further trimmed the thread down to just this one remaining IESG COMMENT.

Kent


-----Original Message-----
From: Kent Watsen <kwatsen@juniper.net>;
Date: Monday, January 7, 2019 at 4:13 PM
To: Benjamin Kaduk <kaduk@mit.edu>;
Cc: The IESG <iesg@ietf.org>;, "draft-ietf-netconf-zerotouch@ietf.org"; <draft-ietf-netconf-zerotouch@ietf.org>;, "netconf-chairs@ietf.org"; <netconf-chairs@ietf.org>;, NETCONF Working Group <netconf@ietf.org>;, "draft-ietf-dnsop-attrleaf@ietf.org"; <draft-ietf-dnsop-attrleaf@ietf.org>;
Subject: Re: Benjamin Kaduk's Discuss on draft-ietf-netconf-zerotouch-25: (with DISCUSS and COMMENT)
Resent-From: <alias-bounces@ietf.org>;
Resent-To: <kwatsen@juniper.net>;, <mikael.abrahamsson@t-systems.se>;, <ianfarrer@gmx.com>;
Resent-Date: Monday, January 7, 2019 at 4:13 PM

[adding Dave, author of the draft-ietf-dnsop-attrleaf]


Hi Ben,

  I have trimmed the below response down to just the remaining open items.


Hi Dave,

  Could you please search for "draft-ietf-dnsop-attrleaf" in this thread,
  which regards this Section 4.2 of the zerotouch draft [1], and provide
  your opinion?  In particular, since _sztp is under _tcp, does that mean
  that it is not a globally scoped entry?
 
  [1] https://tools.ietf.org/html/draft-ietf-netconf-zerotouch-27#section-4.2

Thanks,
Kent


>> >> > ----------------------------------------------------------------------
>> >> > COMMENT:
>> >> > ----------------------------------------------------------------------
>>
>>
>>
>> >> Second, I am not a DNS expert, do you know who we can discuss
>> >> such things with?  That said, I guess our idea was to use TXT
>> >> records like RFC 1464, where the TXT value itself has the form
>> >> "<attribute name>=<attribute value>", in which case it doesn't
>> >> seem to need IANA registration?
>> >
>> > Please correct me if I'm wrong, but I think this issue was
>> > already covered in a different AD's ballot thread.
>> 
>> Correct, Section 4.2 was updated (posted in -26) per Alexey's DISCUSS.
>> Per your original comment (and his, and Adam's), Section 10.6 now
>> requests IANA to register the service name "sztp" (was "zerotouch"). 
>> 
>> > That said, the addition of <serial number>._zerotouch.fqdn in the
>> > -26 seems to indicate that mention of draft-ietf-dnsop-attrleaf
>> > is appropriate, if I remember correctly how that works.
>> 
>> I've just now read draft-ietf-dnsop-attrleaf.  I see the applicability,
>> but I don't understand your proposal.  Looking at DataTracker, I see
>> that it is already in RFC Ed Queue, so I think you're suggesting me
>> treat it as a fait accompli, and add an IANA Consideration section
>> to register "_sztp", yes?  Assuming that is the case, then what should
>
> From memory, yes.
>
>> be done with the service name registration in Section 10.6, added per
>> comments from Alexey and Adam?
>
> I think we'll need to get some further input from Alexey and/or Adam, but
> my understanding is that we would need both registrations -- the service
> name registration covers our _sztp._tcp.fqdn SRV records, but we are also
> using <serial number>._sztp._tcp.fqdn TXT records, and so (IIUC) we'd need
> to add a reference to this document for the TXT _tcp entry that RFC 6763
> (DNS-SD) is currently the reference for.

This item remains open.  Hopefully Dave can provide guidance.



Cheers,
Kent