Re: [perpass] DNS confidentiality

Ben Laurie <benl@google.com> Wed, 25 September 2013 12:26 UTC

Return-Path: <benl@google.com>
X-Original-To: perpass@ietfa.amsl.com
Delivered-To: perpass@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 50CE721F9FA7 for <perpass@ietfa.amsl.com>; Wed, 25 Sep 2013 05:26:46 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.978
X-Spam-Level:
X-Spam-Status: No, score=-1.978 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, FM_FORGED_GMAIL=0.622, NO_RELAYS=-0.001]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id w30YHeRRDRx1 for <perpass@ietfa.amsl.com>; Wed, 25 Sep 2013 05:26:46 -0700 (PDT)
Received: from mail-ie0-x229.google.com (mail-ie0-x229.google.com [IPv6:2607:f8b0:4001:c03::229]) by ietfa.amsl.com (Postfix) with ESMTP id E05E621F9F08 for <perpass@ietf.org>; Wed, 25 Sep 2013 05:26:45 -0700 (PDT)
Received: by mail-ie0-f169.google.com with SMTP id tp5so10895045ieb.0 for <perpass@ietf.org>; Wed, 25 Sep 2013 05:26:44 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type; bh=8a6f7SC+j3uIU+5C6CeQvQR6pIxE/Q7XafaPR5Ioc4M=; b=gwn/H3LcAAE8WJIUk49JaEecGKapyolcV84cYJLtiALdHKx94Vsb8mBrQOD/oe9lln 7g71DLhm81qYxG2bkk2clZx8N9oYRHQnkAQT60OsP2/M0ifG6/sxCUw3WFr1HagGjEkv O3lWhssP5ojcAlVl+AWs9FvO6FNrHX9fC2A9TpEOkhXNSd1I2a4nwtmrWD+1OUK73A+y fKdpIyd7RhdOJJ+e811qOyN/T5nQWeqkKMERVNcs9VEcODFxazXpMYWwvPagFx9CORlB SgKEzwQI9wBOeCpafjz0sB+82wgPBZoVIPm1zjuaqow7dYh8etVTd5oHLvzrbrrc9y75 CQqQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:in-reply-to:references:date :message-id:subject:from:to:cc:content-type; bh=8a6f7SC+j3uIU+5C6CeQvQR6pIxE/Q7XafaPR5Ioc4M=; b=iLQnxC553w+3e+SfD03b30wgGRtH6/KGnJInnUgHPyJfFeHLTfvuIuhIE2Iu0xZn+P xMMxSVN6CiCePP0kMhNBewaGf11+Kx8KwSO8EvYUzN3JqidjV7PjSyWQm5eRcBbX9orH iMh0eA/dmph6gQKcKpu2k6xSIEcVFA4R6FOVJro7L04HwXXn8ZakNT5X8EVJkRhLliBo vbUyM3GNbWoaAIkJbyY/maI5uIhXkFmqs5PPKKr+6OImgUXCee52R/q7kexx8wyDa+Su EGUTSzpFwbX/OxeVqBMhcJrSk9uOL13NUO+iFCJ+Qu7tS+xobWdRW7aStgZA23guWyd2 TUbw==
X-Gm-Message-State: ALoCoQmH0JhsRN/5xO+hgWDXd3pwGsXZ5G8mVifWfAOk2RCpyvW0kaZFR177mOd6gd/Uqwu5phhQoCC0YsCL++VVvZPFjK1Lp4GNHZ859Pgj80AIa/iwg2giRozYk20ly/0EwQoEbie/O5IC+XS3HLOR/O1rX/5AqMxD92SaMbiuSuQJXNTKavyLLVq0TIQZAVlTXwZl6F7p
MIME-Version: 1.0
X-Received: by 10.42.97.71 with SMTP id m7mr19159335icn.33.1380112004085; Wed, 25 Sep 2013 05:26:44 -0700 (PDT)
Received: by 10.64.230.140 with HTTP; Wed, 25 Sep 2013 05:26:43 -0700 (PDT)
In-Reply-To: <alpine.LFD.2.10.1309241708090.11401@bofh.nohats.ca>
References: <524150C7.2020602@cs.tcd.ie> <1380054665.62304.YahooMailNeo@web125505.mail.ne1.yahoo.com> <alpine.LFD.2.10.1309241708090.11401@bofh.nohats.ca>
Date: Wed, 25 Sep 2013 13:26:43 +0100
Message-ID: <CABrd9SRpj4zLLcNs9-o_vqf1bnF4KA7Jmf=KRRC-a-rOVAX0DQ@mail.gmail.com>
From: Ben Laurie <benl@google.com>
To: Paul Wouters <paul@cypherpunks.ca>
Content-Type: text/plain; charset="ISO-8859-1"
Cc: perpass <perpass@ietf.org>, Karl Malbrain <malbrain@yahoo.com>, Stephen Farrell <stephen.farrell@cs.tcd.ie>
Subject: Re: [perpass] DNS confidentiality
X-BeenThere: perpass@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "The perpass list is for discussion of the privacy properties of IETF protocols and concrete ways in which those could be improved. " <perpass.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/perpass>, <mailto:perpass-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/perpass>
List-Post: <mailto:perpass@ietf.org>
List-Help: <mailto:perpass-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/perpass>, <mailto:perpass-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 25 Sep 2013 12:26:46 -0000

On 24 September 2013 22:10, Paul Wouters <paul@cypherpunks.ca> wrote:
> On Tue, 24 Sep 2013, Karl Malbrain wrote:
>
>> To obviate the harvesting of meta-data, we do need a secure interface to
>> DNS.
>
>
> It might help but giving people urls that will trigger dns requests for
> tracking is pretty easy. Only something like tor might safeguard against
> that.

Presumably the threat is not the provider of the URL but an observer
of your traffic?