[Uri-review] Re: [Uri-review] http://www.ietf.org/internet-drafts/draft-josefsson-dns-url-06.txt

Simon Josefsson <jas@extundo.com> Mon, 21 April 2003 18:23 UTC

Received: from www1.ietf.org (ietf.org [132.151.1.19] (may be forged)) by ietf.org (8.9.1a/8.9.1a) with ESMTP id OAA25206 for <uri-review-archive@odin.ietf.org>; Mon, 21 Apr 2003 14:23:08 -0400 (EDT)
Received: (from mailnull@localhost) by www1.ietf.org (8.11.6/8.11.6) id h3LIYJF17740 for uri-review-archive@odin.ietf.org; Mon, 21 Apr 2003 14:34:19 -0400
Received: from ietf.org (odin.ietf.org [132.151.1.176]) by www1.ietf.org (8.11.6/8.11.6) with ESMTP id h3LIYJ817737 for <uri-review-web-archive@optimus.ietf.org>; Mon, 21 Apr 2003 14:34:19 -0400
Received: from ietf-mx (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id OAA25192; Mon, 21 Apr 2003 14:22:38 -0400 (EDT)
Received: from ietf-mx ([132.151.6.1]) by ietf-mx with esmtp (Exim 4.12) id 197fyO-0002Bl-00; Mon, 21 Apr 2003 14:25:00 -0400
Received: from ietf.org ([132.151.1.19] helo=www1.ietf.org) by ietf-mx with esmtp (Exim 4.12) id 197fyO-0002Bh-00; Mon, 21 Apr 2003 14:25:00 -0400
Received: from www1.ietf.org (localhost.localdomain [127.0.0.1]) by www1.ietf.org (8.11.6/8.11.6) with ESMTP id h3LIY8817727; Mon, 21 Apr 2003 14:34:08 -0400
Received: from ietf.org (odin.ietf.org [132.151.1.176]) by www1.ietf.org (8.11.6/8.11.6) with ESMTP id h3LIXa817701 for <uri-review@optimus.ietf.org>; Mon, 21 Apr 2003 14:33:36 -0400
Received: from ietf-mx (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id OAA25172 for <uri-review@ietf.org>; Mon, 21 Apr 2003 14:21:55 -0400 (EDT)
Received: from ietf-mx ([132.151.6.1]) by ietf-mx with esmtp (Exim 4.12) id 197fxh-0002BY-00 for uri-review@ietf.org; Mon, 21 Apr 2003 14:24:17 -0400
Received: from 178.230.13.217.in-addr.dgcsystems.net ([217.13.230.178] helo=yxa.extundo.com) by ietf-mx with esmtp (Exim 4.12) id 197fxg-0002BU-00 for uri-review@ietf.org; Mon, 21 Apr 2003 14:24:17 -0400
Received: from latte.josefsson.org (yxa.extundo.com [217.13.230.178]) (authenticated bits=0) by yxa.extundo.com (8.12.9/8.12.9) with ESMTP id h3LIOVXK025788 (version=TLSv1/SSLv3 cipher=EDH-RSA-DES-CBC3-SHA bits=168 verify=OK); Mon, 21 Apr 2003 20:24:32 +0200
To: Larry Masinter <LMM@acm.org>
Cc: 'Ted Hardie' <hardie@qualcomm.com>, uri-review@ietf.org
X-Payment: hashcash 1.2 0:030421:LMM@acm.org:67589d44f81bbf8f
X-Hashcash: 0:030421:LMM@acm.org:67589d44f81bbf8f
X-Payment: hashcash 1.2 0:030421:hardie@qualcomm.com:adf3dc1e04bf3ac5
X-Hashcash: 0:030421:hardie@qualcomm.com:adf3dc1e04bf3ac5
X-Payment: hashcash 1.2 0:030421:uri-review@ietf.org:ad342260d84a8f33
X-Hashcash: 0:030421:uri-review@ietf.org:ad342260d84a8f33
From: Simon Josefsson <jas@extundo.com>
Date: Mon, 21 Apr 2003 20:24:30 +0200
In-Reply-To: <000a01c2fec3$0e623470$76432099@MASINTERPAD> (Larry Masinter's message of "Wed, 9 Apr 2003 11:08:43 -0700")
Message-ID: <ilu3ckb4skh.fsf@latte.josefsson.org>
User-Agent: Gnus/5.090019 (Oort Gnus v0.19) Emacs/21.3.50 (gnu/linux)
References: <000a01c2fec3$0e623470$76432099@MASINTERPAD>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
X-Spam-Status: No, hits=-29.2 required=5.0 tests=EMAIL_ATTRIBUTION,IN_REP_TO,REFERENCES,REPLY_WITH_QUOTES, USER_AGENT_GNUS_UA autolearn=ham version=2.50
X-Spam-Checker-Version: SpamAssassin 2.50 (1.173-2003-02-20-exp)
Subject: [Uri-review] Re: [Uri-review] http://www.ietf.org/internet-drafts/draft-josefsson-dns-url-06.txt
Sender: uri-review-admin@ietf.org
Errors-To: uri-review-admin@ietf.org
X-BeenThere: uri-review@ietf.org
X-Mailman-Version: 2.0.12
Precedence: bulk
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/uri-review>, <mailto:uri-review-request@ietf.org?subject=unsubscribe>
List-Id: Proposed URI Schemes <uri-review.ietf.org>
List-Post: <mailto:uri-review@ietf.org>
List-Help: <mailto:uri-review-request@ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/uri-review>, <mailto:uri-review-request@ietf.org?subject=subscribe>

Thanks for looking at the document.

"Larry Masinter" <LMM@acm.org> writes:

> I'm having trouble imagining the applicability of
> this scheme, even in "DNS related software".
>
> Perhaps some examples of where/when you'd use a
> "dns" URL among many other kinds of URLs?

The document contains an example

,----
|    The following illustrate a DNS query for "simon.example.org" for the
|    CERT type in the Internet (IN) class:
|
|    dns:simon.example.org?type=CERT
`----

which in combination with, e.g., draft-ietf-tls-extensions-06.txt
illustrate how TLS servers may retrieve certificates for clients via
DNS.  The TLS extension solve how this is made secure even when the
protocol (like DNS) that retrieves the certificate is not secure.

Isn't the example sufficient?  I'm somewhat reluctant to add too much
detail on how the URI scheme is used by other protocols, because
people may then start to debate whether the example is secure or not.
I'd like to push that discussion to the security specifications that
uses the URI instead, where it belongs, is appropriate and productive.
In this regard, DNS URIs aren't different from any other URI scheme
that refer to data retrieved via insecure protocols.

Of course, if you like to contribute a specific thorough discussion
that you feel is appropriate, it could be incorporated.

_______________________________________________
Uri-review mailing list
Uri-review@ietf.org
https://www1.ietf.org/mailman/listinfo/uri-review