Re: [Tls-reg-review] Request to register ALPN ID for DNS-over-TLS

"Salz, Rich" <rsalz@akamai.com> Tue, 14 January 2020 19:45 UTC

Return-Path: <rsalz@akamai.com>
X-Original-To: tls-reg-review@ietfa.amsl.com
Delivered-To: tls-reg-review@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 62F1C12093D for <tls-reg-review@ietfa.amsl.com>; Tue, 14 Jan 2020 11:45:37 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.899
X-Spam-Level:
X-Spam-Status: No, score=-1.899 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, HTTPS_HTTP_MISMATCH=0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=akamai.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id sPLJz71Ad5mc for <tls-reg-review@ietfa.amsl.com>; Tue, 14 Jan 2020 11:45:32 -0800 (PST)
Received: from mx0b-00190b01.pphosted.com (mx0b-00190b01.pphosted.com [IPv6:2620:100:9005:57f::1]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 2F49B120058 for <tls-reg-review@ietf.org>; Tue, 14 Jan 2020 11:45:32 -0800 (PST)
Received: from pps.filterd (m0050096.ppops.net [127.0.0.1]) by m0050096.ppops.net-00190b01. (8.16.0.42/8.16.0.42) with SMTP id 00EJZ9M0009610; Tue, 14 Jan 2020 19:45:30 GMT
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=akamai.com; h=from : to : cc : subject : date : message-id : references : in-reply-to : content-type : mime-version; s=jan2016.eng; bh=/3HWwXfPYHBFlH0z2kMLtSWqzqOL2DjZANhqCv55m+M=; b=kK+Uw7TTjLwivzBgr4UQbQ9gmdK/1gVwOEfDCU2j/TG2woVFQJie0AVY726y3jnV1Wh+ gi9R8LcK7bAEZrpm/3DUfWV9dcj+JzCWN05YgK90yvs5cQ3hAiSPSehit6vZNElz1kzX SIG+pmERxA+Q80P9UTM/U0mr098Hd28p04JmZcFPiqfCsoD+qQ6+SfeQhVWxWnF0vcub FopKD08S3+pBuBe9io3yV3m+H3UTMkEouPX8Pq62K5/tdxzSwV5dLgVcIb9axGSM3xjo slPunvIQ3UhxixeoHh19fkqOYgHH8LTjQE8z+7ws1BJ8dwHdvMvv//tSrF4SAos8/aYh EQ==
Received: from prod-mail-ppoint7 (prod-mail-ppoint7.akamai.com [96.6.114.121] (may be forged)) by m0050096.ppops.net-00190b01. with ESMTP id 2xf7ncn8xf-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Tue, 14 Jan 2020 19:45:30 +0000
Received: from pps.filterd (prod-mail-ppoint7.akamai.com [127.0.0.1]) by prod-mail-ppoint7.akamai.com (8.16.0.27/8.16.0.27) with SMTP id 00EJZAQw003749; Tue, 14 Jan 2020 14:45:29 -0500
Received: from email.msg.corp.akamai.com ([172.27.123.53]) by prod-mail-ppoint7.akamai.com with ESMTP id 2xfak4xv4u-4 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-SHA384 bits=256 verify=NOT); Tue, 14 Jan 2020 14:45:27 -0500
Received: from USMA1EX-DAG1MB3.msg.corp.akamai.com (172.27.123.103) by usma1ex-dag3mb5.msg.corp.akamai.com (172.27.123.55) with Microsoft SMTP Server (TLS) id 15.0.1473.3; Tue, 14 Jan 2020 14:45:14 -0500
Received: from USMA1EX-DAG1MB3.msg.corp.akamai.com ([172.27.123.103]) by usma1ex-dag1mb3.msg.corp.akamai.com ([172.27.123.103]) with mapi id 15.00.1473.005; Tue, 14 Jan 2020 14:45:14 -0500
From: "Salz, Rich" <rsalz@akamai.com>
To: "Reed, Jon" <jreed@akamai.com>, Nick Sullivan <nick@cloudflare.com>
CC: Yoav Nir <ynir.ietf@gmail.com>, "tls-reg-review@ietf.org" <tls-reg-review@ietf.org>
Thread-Topic: [Tls-reg-review] Request to register ALPN ID for DNS-over-TLS
Thread-Index: AQHVtCjWsEW9pfqDIk2Wos8/AAR5nKe9VHyAgAAkWQCALX50gP//xquA
Date: Tue, 14 Jan 2020 19:45:13 +0000
Message-ID: <2718EB9D-C78D-4937-B023-36F7055B4A9B@akamai.com>
References: <E83467EF-A186-4ED9-8299-B3A1630B793F@akamai.com> <AE40BB7D-4EDC-4D66-91B8-3D4E4AF4DF57@gmail.com> <CAFDDyk-JvH0vjZk=UNYKWvWaVc4kJcp03w7syyD7mOybSR6gNw@mail.gmail.com> <AD8E9FBE-0617-433C-B4F7-ECBC413523F8@akamai.com>
In-Reply-To: <AD8E9FBE-0617-433C-B4F7-ECBC413523F8@akamai.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/10.21.0.200113
x-ms-exchange-messagesentrepresentingtype: 1
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [172.19.117.13]
Content-Type: multipart/alternative; boundary="_000_2718EB9DC78D4937B02336F7055B4A9Bakamaicom_"
MIME-Version: 1.0
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:, , definitions=2020-01-14_06:, , signatures=0
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 suspectscore=0 malwarescore=0 phishscore=0 bulkscore=0 spamscore=0 mlxscore=0 mlxlogscore=999 adultscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.0.1-1911140001 definitions=main-2001140150
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:6.0.138, 18.0.572 definitions=2020-01-14_06:2020-01-14, 2020-01-14 signatures=0
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 mlxlogscore=999 suspectscore=0 clxscore=1011 bulkscore=0 phishscore=0 priorityscore=1501 lowpriorityscore=0 spamscore=0 impostorscore=0 adultscore=0 mlxscore=0 malwarescore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-1910280000 definitions=main-2001140150
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls-reg-review/Odh9DmfkrAw7JPgeFmTXy7qiiNw>
Subject: Re: [Tls-reg-review] Request to register ALPN ID for DNS-over-TLS
X-BeenThere: tls-reg-review@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: TLS REVIEW <tls-reg-review.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls-reg-review>, <mailto:tls-reg-review-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls-reg-review/>
List-Post: <mailto:tls-reg-review@ietf.org>
List-Help: <mailto:tls-reg-review-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls-reg-review>, <mailto:tls-reg-review-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 14 Jan 2020 19:45:37 -0000

There’s no publishing cycle; the IANA folks just update the doc and publish to the website.

The approvals probably got drowned out during the holiday festivities.  You got approved, so you treat the assignment as official; the website/registry will catch up soon.

From: "Reed, Jon" <jreed@akamai.com>
Date: Tuesday, January 14, 2020 at 1:10 PM
To: Nick Sullivan <nick@cloudflare.com>
Cc: Yoav Nir <ynir.ietf@gmail.com>, Rich Salz <rsalz@akamai.com>, "tls-reg-review@ietf.org" <tls-reg-review@ietf.org>
Subject: Re: [Tls-reg-review] Request to register ALPN ID for DNS-over-TLS

Hi folks,

Just following up on this, since I think the 3 week review period has expired.   Can we move forward with publishing this registration, or is there some periodic publication cycle?

Thanks,

Jon


On Dec 16, 2019, at 2:26 PM, Nick Sullivan <nick@cloudflare.com<mailto:nick@cloudflare.com>> wrote:

Fine with me.

On Mon, Dec 16, 2019 at 9:16 AM Yoav Nir <ynir.ietf@gmail.com<mailto:ynir.ietf@gmail.com>> wrote:
I think it’s fine.  Nick?


On 16 Dec 2019, at 17:52, Salz, Rich <rsalz@akamai.com<mailto:rsalz@akamai.com>> wrote:

Yoav and Nick,

Could you guys approve this?  Since it came from Akamai, I want to abstain.

From: "Reed, Jon" <jreed@akamai.com<mailto:jreed@akamai.com>>
Date: Monday, December 16, 2019 at 7:56 AM
To: "tls-reg-review@ietf.org<mailto:tls-reg-review@ietf.org>" <tls-reg-review@ietf.org<mailto:tls-reg-review@ietf.org>>
Subject: [Tls-reg-review] Request to register ALPN ID for DNS-over-TLS

Hi,

I'd like to request registration of an ALPN ID for DNS-over-TLS (RFC 7858).   The ID will be used, by prior out-of-band mutual agreement, in cases where DNS-over-TLS is used over a non-standard-part (e.g. 443).    The identification sequence will be: 0x64 0x6F 0x74 ("dot").

Rich Salz suggested I survey the dprive working group before doing this, and I have done so[1].  There appears to be support for this, including from one of the authors of RFC 7858, provided it's used by prior agreement on non-standard ports, and not required as part of normal use on port 853.

Please let me know if you have more questions or need more information.

Thanks,

Jon

[1] https://mailarchive.ietf.org/arch/msg/dns-privacy/iZ2rDIhFB2ZWsGC3PcdBVLGa8Do<https://urldefense.proofpoint.com/v2/url?u=https-3A__mailarchive.ietf.org_arch_msg_dns-2Dprivacy_iZ2rDIhFB2ZWsGC3PcdBVLGa8Do&d=DwMFaQ&c=96ZbZZcaMF4w0F4jpN6LZg&r=_xTHEvws93UZ7jl9jhO7Pg&m=i070mdRi8IojDr3bkm87Qo7LqaTJVtz-8A6t_AJuNj0&s=xt3xOwMGNirCRCDokBxZVoL0ybgcuYq6giiuUtVOp7w&e=>

--
Jon Reed
jreed@akamai.com<mailto:jreed@akamai.com>
Nameservers Service Performance
Akamai Technologies