In message <61fd3ee3-3043-4ab1-9823-6a9d61b14...@vigilsec.com>, Russ Housley wr
ites:

> I have a big problem with Section 6 of draft-ietf-homenet-dot-03.  If the
> domain name is to be published in the root zone, then I do not think that
> the special-use TLD registration is appropriate.  That said, if the
> requirement for publication in the root zone is removed, I do not have a
> problem with proceeding with a special-use TLD registration.
>
> Russ

Russ,
       what is different between the special use domain name
10.in-addr.arpa name being published in the in-arpa.arpa zone and
the special use domain name (to be) homenet being published in the
root zone.

* They are BOTH published/expected to be published in the parent zone.
* They BOTH do not expect lookups except of DS records at that name.
* Both want to break chain of trust from the root zone at the name.

>From a operational point of view there is zero difference, yet you
say one should be published and one shouldn't.

What is you technical reasoning behind this.

Nowhere does making a name special use preclude publishing it?

There are other special use names that really should also be in the
registry because they are baked into software.

in-addr.arpa is special use because that is the name we use to
construct IPv4 address to name lookups.

ip6.arpa is special use because that is the name we use to construct
IPv6 address to name lookups.

Both of these should be is the special use domain registry.

Mark

> > On Mar 19, 2017, at 9:44 PM, Suzanne Woolf <suzworldw...@gmail.com>
> wrote:
> >
> > Hi,
> >
> > The INT Area Director who oversees the homenet WG, Terry Manderson, has
> asked DNSOP participants to review
> https://www.ietf.org/id/draft-ietf-homenet-dot-03.txt
> <https://www.ietf.org/id/draft-ietf-homenet-dot-03.txt>, "Special Use Top
> Level Domain '.homenet’”, with the following aspects in mind:
> >
> > 1) in terms of RFC6761
> >
> > 2) in terms of the _operational_ position of an unsigned entry in the
> root zone as requested in this document, to break the chain of trust for
> local DNS resolution of .homenet names.
> >
> > This document is the product of the homenet WG, which has asked the
> IESG to approve it for publication, so our comments are strictly advisory
> to the IESG. There was some discussion of the draft on this list shortly
> after it appeared, in November 2016, but it’s always the AD’s prerogative
> to ask for additional review.
> >
> >
> >
> > thanks,
> > Suzanne & Tim

-- 
Mark Andrews, ISC
1 Seymour St., Dundas Valley, NSW 2117, Australia
PHONE: +61 2 9871 4742                 INTERNET: ma...@isc.org

_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to