Hi Mark,

> On Nov 29, 2015, at 6:55 PM, Mark Andrews <ma...@isc.org> wrote:
> 
> 
> 
> Some feedback with respect to installed trust anchors is needed.
> 
> Whether this is the correct solution I'm not sure.  It requires
> updating all resolvers in the resolution path to both cache and
> relay tags.

I'm not sure where you got the idea that a resolver would cache key tags.
The document I've drafted does not propose that.  It does propose that
a recursive would forward key tag values for cache misses.

>  The same can be achieved by encoding the tags into
> qnames/qtypes

Yes, perhaps.  But then we start to run into all the problems of special
use and non-service names, don't we?

As I've said a number of times before, the edns-key-tag proposal is modelled
after RFC 6975, which does the same thing for algorithms.  If it works for
algorithms why wouldn't it work for key tags?

> without needing the entire ecosystem to be upgraded
> which this proposal requires.

I disagree with this characterization that "the entire ecosystem" needs
to be upgraded.  Yes a non-key-tag-aware recursive won't know to forward
the option, but this is true for all EDNS options.


DW


> 
> e.g.
>       _ta_<base32-tag-sequence>.<trustanchor>/NULL
> 
> Mark
> 
> In message <5659a1db.5090...@gmail.com>, Tim Wicinski writes:
>> 
>> This starts a Call for Adoption for draft-wessels-edns-key-tag
>> 
>> The draft is available here:
>> https://datatracker.ietf.org/doc/draft-wessels-edns-key-tag/
>> 
>> There was unanimous support this during the meeting in Yokohama, so this 
>> is more of a formality, unless we hear strong negative reaction.
>> 
>> However, please indicate if you are willing to contribute text, review, etc.
>> 
>> Since there was unanimous support for this draft, I am going with a one 
>> week Call for Adoption. Please feel free to protest if anyone feels this 
>> is out of line.
>> 
>> This call for adoption ends 7 December 2015.
>> 
>> Thanks,
>> tim wicinski
>> DNSOP co-chair
>> 
>> _______________________________________________
>> DNSOP mailing list
>> DNSOP@ietf.org
>> https://www.ietf.org/mailman/listinfo/dnsop
> -- 
> Mark Andrews, ISC
> 1 Seymour St., Dundas Valley, NSW 2117, Australia
> PHONE: +61 2 9871 4742                 INTERNET: ma...@isc.org
> 
> _______________________________________________
> DNSOP mailing list
> DNSOP@ietf.org
> https://www.ietf.org/mailman/listinfo/dnsop

_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to