[DNSOP] RFC 7816 on DNS Query Name Minimisation to Improve Privacy

2016-03-22 Thread rfc-editor
A new Request for Comments is now available in online RFC libraries. RFC 7816 Title: DNS Query Name Minimisation to Improve Privacy Author: S. Bortzmeyer Status: Experimental Stream: IETF Date: M

Re: [DNSOP] Introducing draft-vavrusa-dnsop-aaaa-for-free

2016-03-22 Thread Mark Andrews
In message <2016030345.29993...@pallas.home.time-travellers.org>, Shane Kerr writes: > Maybe we just need a new RTYPE. It would be awesome if CloudFlare > killed ANY and then gave us ANYA ("any address"). ;) You would then need to do ANYA, A and queries or you have to have signaling to

Re: [DNSOP] Introducing draft-vavrusa-dnsop-aaaa-for-free

2016-03-22 Thread Marek Vavruša
On Tue, Mar 22, 2016 at 2:03 PM, Shane Kerr wrote: > Marek, > > At 2016-03-22 12:12:08 -0700 > Marek Vavruša wrote: > > > 2. Behavior of stubs is not explicit in the draft > > > > I should have stated this explicitly, the draft doesn't update behaviour > of > > stub resolvers. In my opinion, the

Re: [DNSOP] Introducing draft-vavrusa-dnsop-aaaa-for-free

2016-03-22 Thread Marek Vavruša
On Tue, Mar 22, 2016 at 1:20 PM, Mark Andrews wrote: > > In message tb11orh1myro+ccemjwy67nyhdcrgwvhe+jm568o2cl7...@mail.gmail.com>, > =?UTF-8?Q?Marek_Vavru=C5=A1a?= writes: > > > > Thanks everybody for comments! It's a lot so I'll try to rephrase and > > answer the questions below. > > > > 1. N

Re: [DNSOP] Introducing draft-vavrusa-dnsop-aaaa-for-free

2016-03-22 Thread Shane Kerr
Marek, At 2016-03-22 12:12:08 -0700 Marek Vavruša wrote: > 2. Behavior of stubs is not explicit in the draft > > I should have stated this explicitly, the draft doesn't update behaviour of > stub resolvers. In my opinion, they should use the most basic form of DNS > and work only over local or

Re: [DNSOP] Introducing draft-vavrusa-dnsop-aaaa-for-free

2016-03-22 Thread Mark Andrews
In message , =?UTF-8?Q?Marek_Vavru=C5=A1a?= writes: > > Thanks everybody for comments! It's a lot so I'll try to rephrase and > answer the questions below. > > 1. No signalling to client when is unavailable > > I didn't want to include it in the beginning but I see it has a merit. > DNSS

Re: [DNSOP] Introducing draft-vavrusa-dnsop-aaaa-for-free

2016-03-22 Thread Marek Vavruša
Thanks everybody for comments! It's a lot so I'll try to rephrase and answer the questions below. 1. No signalling to client when is unavailable I didn't want to include it in the beginning but I see it has a merit. DNSSEC has means to provide authenticated non-existence for free, so I think

Re: [DNSOP] I-D Action: draft-ietf-dnsop-edns-client-subnet-07.txt

2016-03-22 Thread Mukund Sivaraman
On Mon, Mar 21, 2016 at 06:22:52PM -0700, 神明達哉 wrote: > At Tue, 22 Mar 2016 01:15:48 +0530, > Mukund Sivaraman wrote: > > > > > (1) Section 7.2.1. Authoritative Nameserver: > > > > I'm confused about the revised Section 7.2.1 regarding overlapping > > > prefixes. The 07 version of the draft no

Re: [DNSOP] Introducing draft-vavrusa-dnsop-aaaa-for-free

2016-03-22 Thread Shumon Huque
On Tue, Mar 22, 2016 at 7:41 AM, Tony Finch wrote: > Marek Vavruša wrote: > > > > there was an interest in reducing latency for address record lookups. > > Me and Olafur wrote a draft on adding records to A answers and > > treating them as authoritative. This fixes latency issues with NS >

Re: [DNSOP] Introducing draft-vavrusa-dnsop-aaaa-for-free

2016-03-22 Thread Bob Harold
On Tue, Mar 22, 2016 at 7:41 AM, Tony Finch wrote: > Marek Vavruša wrote: > > > > there was an interest in reducing latency for address record lookups. > > Me and Olafur wrote a draft on adding records to A answers and > > treating them as authoritative. This fixes latency issues with NS >

Re: [DNSOP] Introducing draft-vavrusa-dnsop-aaaa-for-free

2016-03-22 Thread Tony Finch
Marek Vavruša wrote: > > there was an interest in reducing latency for address record lookups. > Me and Olafur wrote a draft on adding records to A answers and > treating them as authoritative. This fixes latency issues with NS > A/ discovery in resolvers and improves caching for clients

Re: [DNSOP] Introducing draft-wouters-sury-dnsop-algorithm-update

2016-03-22 Thread Stephane Bortzmeyer
On Sat, Mar 19, 2016 at 04:04:06PM -0400, Paul Hoffman wrote a message of 51 lines which said: > GOST is a "national algorithm", meaning that it is used almost > exclusively in only one country (in this case Russia). Five (5) domains in .fr are signed with GOST :-) __