Re: [DNSOP] DNS privacy : now at least two drafts

2014-03-17 Thread Mark Andrews
In message <87a9coiyqc@mid.deneb.enyo.de>, Florian Weimer writes: > * Mark Andrews: > > > In message <87y50auqqf@mid.deneb.enyo.de>, Florian Weimer writes: > >> * Mark Andrews: > >> > >> >>>Another note is that the answer to the NS query, unlike the referra > l > >> >>>sent when

Re: [DNSOP] DNS privacy : now at least two drafts

2014-03-17 Thread Florian Weimer
* Mark Andrews: > In message <87y50auqqf@mid.deneb.enyo.de>, Florian Weimer writes: >> * Mark Andrews: >> >> >>>Another note is that the answer to the NS query, unlike the referral >> >>>sent when the question is a full qname, is in the Answer section, not >> >>>in the Authoritati

Re: [DNSOP] DNS privacy : now at least two drafts

2014-03-17 Thread Mark Andrews
In message <87y50auqqf@mid.deneb.enyo.de>, Florian Weimer writes: > * Mark Andrews: > > >>>Another note is that the answer to the NS query, unlike the referral > >>>sent when the question is a full qname, is in the Answer section, not > >>>in the Authoritative section. It has pro

Re: [DNSOP] DNS privacy : now at least two drafts

2014-03-16 Thread Florian Weimer
* Mark Andrews: >>>Another note is that the answer to the NS query, unlike the referral >>>sent when the question is a full qname, is in the Answer section, not >>>in the Authoritative section. It has probably no practical >>>consequences. >> >> Most resolvers do not make NS quer

Re: [DNSOP] DNS privacy : now at least two drafts

2014-03-16 Thread Florian Weimer
* Florian Weimer: > There is another privacy-enhancing approach that is not mentioned in > the draft: defensive delegations. For example, with current resolver > behavior, the lack of a delegation for 1.E164.ARPA means that queries > under that tree are sent to the E164.ARPA servers, which are sc

Re: [DNSOP] DNS privacy : now at least two drafts

2014-03-11 Thread Mark Andrews
In message <87fvmsd0nk@mid.deneb.enyo.de>, Florian Weimer writes: > * Stephane Bortzmeyer: > > > On Sat, Mar 08, 2014 at 06:07:48PM +0100, > > Florian Weimer wrote > > a message of 17 lines which said: > > > >> > It is. Section 2.2.2 > >> > >> Can you quote it here? > > > > 2.2.2. In t

Re: [DNSOP] DNS privacy : now at least two drafts

2014-03-08 Thread Florian Weimer
* Stephane Bortzmeyer: > On Sat, Mar 08, 2014 at 06:07:48PM +0100, > Florian Weimer wrote > a message of 17 lines which said: > >> > It is. Section 2.2.2 >> >> Can you quote it here? > > 2.2.2. In the authoritative name servers Ahhh, this section heading is wrong, the section is actually d

Re: [DNSOP] DNS privacy : now at least two drafts

2014-03-08 Thread Stephane Bortzmeyer
On Sat, Mar 08, 2014 at 06:07:48PM +0100, Florian Weimer wrote a message of 17 lines which said: > > It is. Section 2.2.2 > > Can you quote it here? 2.2.2. In the authoritative name servers A possible solution would be to minimize the amount of data sent from the resolver. When a r

Re: [DNSOP] DNS privacy : now at least two drafts

2014-03-08 Thread Florian Weimer
* Stephane Bortzmeyer: > On Sat, Mar 08, 2014 at 05:50:55PM +0100, > Florian Weimer wrote > a message of 22 lines which said: > >> The -sol draft mentions QNAME minimization without defining the >> term. > > It is. Section 2.2.2 Can you quote it here? It seems to be missing from the 00 versi

Re: [DNSOP] DNS privacy : now at least two drafts

2014-03-08 Thread Stephane Bortzmeyer
On Sat, Mar 08, 2014 at 05:50:55PM +0100, Florian Weimer wrote a message of 22 lines which said: > The -sol draft mentions QNAME minimization without defining the > term. It is. Section 2.2.2 I'll add some more cross-references to make it easier to find it. _

Re: [DNSOP] DNS privacy : now at least two drafts

2014-03-08 Thread Florian Weimer
* Stephane Bortzmeyer: > I just posted a new version of the DNS privacy draft, > draft-bortzmeyer-dnsop-dns-privacy-01. The most important difference > is that it is now split in two, one pure problem statement, > draft-bortzmeyer-dnsop-dns-privacy and an exploration of possible > solutions, draft

[DNSOP] DNS privacy : now at least two drafts

2013-12-17 Thread Stephane Bortzmeyer
I just posted a new version of the DNS privacy draft, draft-bortzmeyer-dnsop-dns-privacy-01. The most important difference is that it is now split in two, one pure problem statement, draft-bortzmeyer-dnsop-dns-privacy and an exploration of possible solutions, draft-bortzmeyer-dnsop-privacy-sol. The