Re: [DNSOP] Automated delegation management via DDNS

2023-10-27 Thread Paul Wouters
On Fri, 27 Oct 2023, Johan Stenstam wrote: Scanners are, of course, inefficient, and notifications are a way to improve that. I just think that as we are making comparisons, with arguments whose strength is (in part) based on the number of queries needed, we should get the order of magnitude

Re: [DNSOP] [Editorial Errata Reported] RFC8906 (7689)

2023-10-27 Thread Rebecca VanRheenen
Hi Mark, Paul, and Warren, The RPC set this to technical because we cannot determine the validity of the report or provide appropriate notes. As AD, Warren can reset the type to editorial if/when he verifies the report. Also, Warren can update the report to say “global” rather than point to a

Re: [DNSOP] [IANA #1285115] expert review for draft-ietf-dnsop-dns-error-reporting (DNS EDNS0 Option Codes (OPT))

2023-10-27 Thread Olafur Gudmundsson
This specification is complete and clear Status: Approved Ólafur > On Oct 24, 2023, at 3:36 PM, David Dong via RT > wrote: > > Dear Olafur Gudmundsson (cc: dnsop WG), > > As the designated expert for the DNS EDNS0 Option Codes (OPT) registry, can > you review the proposed registration in

Re: [DNSOP] Automated delegation management via DDNS

2023-10-27 Thread Johan Stenstam
> On 10/27/23 11:51, Johan Stenstam wrote: >>> Extra vantage points are a mitigation for the (prevalent) lack of >>> signatures during bootstrapping; once authentication is handled, there's no >>> need for it. >> I get that. But, as you know from both the draft and the presentation I made >> at

Re: [DNSOP] [EXTERNAL] AD Review: draft-ietf-dnsop-zoneversion

2023-10-27 Thread Suzanne Woolf
Warren, authors, and WG: Thanks Warren for being so clear about your concerns with this document. Authors-- Please review Warren's comments. Tim won't be in Prague, but Benno or I would be happy to sit down with you (and Warren if you/he want) to discuss. Once you've had a chance to consider h

Re: [DNSOP] Automated delegation management via DDNS

2023-10-27 Thread Peter Thomassen
On 10/27/23 11:51, Johan Stenstam wrote: Extra vantage points are a mitigation for the (prevalent) lack of signatures during bootstrapping; once authentication is handled, there's no need for it. I get that. But, as you know from both the draft and the presentation I made at OARC some week

Re: [DNSOP] Automated delegation management via DDNS

2023-10-27 Thread Johan Stenstam
Hi Peter, > On 10/25/23 18:19, Johan Stenstam wrote: >> With “scanners” I refer to CDS scanners and CSYNC scanners. These things >> issue a gazillion DNS queries, over and over and over, with an extremely >> small catch of “new CDS” or “new CSYNC” records. They get hit by rate >> limiting measu