Re: [DNSOP] Fwd: New Version Notification for draft-pusateri-dnsop-update-timeout-01.txt

2019-02-19 Thread Robert Story
128 being one of the supported algorithms, but one of the SHA-2 algorithms should be selected for MUST implement. -- Robert Story <http://www.isi.edu/~rstory> USC Information Sciences Institute <http://www.isi.edu/> ___ DNSOP mailing list D

Re: [DNSOP] sentinel and timing?

2018-02-07 Thread Robert Story
ed a SNMP over DNS draft? :-p -- Robert Story <http://www.isi.edu/~rstory> USC Information Sciences Institute <http://www.isi.edu/> pgpdf4eOn2zwe.pgp Description: OpenPGP digital signature ___ DNSOP mailing list DNSOP@ietf.org https://www.ietf

Re: [DNSOP] I-D Action: draft-huston-kskroll-sentinel-04.txt

2018-01-31 Thread Robert Story
all the various actors here (resolver > implementers, zone managers) so that it was more clear who was doing > what. I agree that the draft should be clearer on who needs to do what. -- Robert Story <http://www.isi.edu/~rstory> USC Information Sciences Institute <http://www

Re: [DNSOP] I-D Action: draft-huston-kskroll-sentinel-04.txt

2018-01-28 Thread Robert Story
an A record response for the invalid name. Similarly, shouldn't all three of these be "an A or record"? The table following this text also only specifies "A" for responses. -- Robert Story <http://www.isi.edu/~

[DNSOP] kskroll-sentinel responses

2017-12-21 Thread Robert Story
rt of static configuration, or learned via 5011. -- Robert Story <http://www.isi.edu/~rstory> USC Information Sciences Institute <http://www.isi.edu/> pgpwVyffI5pQ4.pgp Description: OpenPGP digital signature ___ DNSOP mailing list DNS

Re: [DNSOP] WGLC: "Considerations for the use of DNS Reverse Mapping"

2008-03-29 Thread Robert Story
nge the ISP's reversing mapping, so a system admin can decide to mark mail coming from dynamic27381.big-isp.example.com as very likely being spam. -- Robert Story SPARTA signature.asc Description: PGP signature ___ DNSOP mailing list DNSOP@ietf.org https://www.ietf.org/mailman/listinfo/dnsop

Re: [DNSOP] Proposed text for reverse-mapping-considerations draft

2007-06-04 Thread Robert Story
to reverse DNS requests, so the attacker appeared to be coming from a trusted machine." -- Robert Story SPARTA signature.asc Description: PGP signature ___ DNSOP mailing list DNSOP@ietf.org https://www1.ietf.org/mailman/listinfo/dnsop

Re: [DNSOP] Feedback on draft-koch-dnsop-resolver-priming

2007-05-11 Thread Robert Story
sting even more time, and likely resulting the the censorship being overruled. Like I said, I completely understand your position, but the process is supposed to be open. 3979 even explicitly acknowledges that IPR claims can be "in some cases be disingenuous, i.e., made to

Re: [DNSOP] Feedback on draft-koch-dnsop-resolver-priming

2007-05-11 Thread Robert Story
tion to root zone operators is a bit troubling.) Anyways, the basic idea is that there's no need to start the flame-fest/endless arguments until it looks like there is actually some support for the idea. -- Robert Story SPARTA signature.asc Description: PGP signature

Re: Fwd: [DNSOP] Re: I-D ACTION:draft-ietf-dnsop-reverse-mapping-considerations-02.txt

2007-03-26 Thread Robert Story
authors and other proponents of the draft want to represent the real world. In the real world, lack of reverse DNS can have negative consequences. This is explained in the draft so that the reader can make an informed decision about whether or not to provide reverse DNS. [1] h

Re: [DNSOP] what's the right thing to do upon receiving something like this?

2007-02-21 Thread Robert Story
ich I support), I think there should also be an exception for the listening IP subnet(s)/localnets. eg. server localnets { bogus no; }; Of course, there is also a difference between packets received from outside the local net and inside. A local ip from a local server is fine; the same add

Re: [DNSOP] what's the right thing to do upon receiving something like this?

2007-02-16 Thread Robert Story
ed. (i'm not sure bind wouldn't follow powerdns's lead on this PV> topic, but i am sure that if there was an rfc, bind would have a similar PV> feature.) so the key question is, have we got consensus on the behaviour? Sounds good to me... -- Ro

Re: [DNSOP] reverse-mapping-considerations: ambiguity?

2007-02-15 Thread Robert Story
associated with multiple domains. Anyone who tries using this method would quickly for email would quickly find out it's a bad idea (see http://news.com.com/2100-1023-982118.html). -- Robert Story SPARTA signature.asc Description: PGP signature ___ DNSOP mailing list DNSOP@ietf.org https://www1.ietf.org/mailman/listinfo/dnsop

Re: [DNSOP] reverse-mapping-considerations: ambiguity?

2007-02-07 Thread Robert Story
most mail from dialups is spam. You are quite right, however, that I would be daft to have a firewall rule to a control port of a router that looked like 'good-guy.* ALLOW'. But that doesn't mean that the first use is unreasonable. -- Robert Story SPARTA signature.asc Des

Re: [DNSOP] reverse-mapping-considerations: ambiguity?

2007-02-06 Thread Robert Story
rse mappings at all. I think it's a reasonable thing to say. -- Robert Story SPARTA signature.asc Description: PGP signature ___ DNSOP mailing list DNSOP@ietf.org https://www1.ietf.org/mailman/listinfo/dnsop

Re: [DNSOP] Scope of the future NCP (Was: I-D ACTION:draft-regnauld-ns-communication-00.txt

2006-12-22 Thread Robert Story
ring large zone files and such... -- Robert Story SPARTA signature.asc Description: PGP signature ___ DNSOP mailing list DNSOP@ietf.org https://www1.ietf.org/mailman/listinfo/dnsop

[DNSOP] Re: RFC 4641 errata

2006-11-30 Thread Robert Story
RRSIG10(DNSKEY) RRSIG10(DNSKEY)RRSIG11(DNSKEY) RRSIG11(DNSKEY) Double Signature Zone Signing Key Rollover -- Robert Story SPARTA signature.asc Descrip

[DNSOP] RFC 4641 errata

2006-11-30 Thread Robert Story
G11(DNSKEY) Pre-Publish Key Rollover -- Robert Story SPARTA signature.asc Description: PGP signature ___ DNSOP mailing list [EMAIL PROTECTED] https://www1.ietf.org/mailman/listinfo/dnsop