Re: [DNSOP] [Ext] Re: General comment about downgrades vs. setting expectations in protocol definitions

2024-02-13 Thread Edward Lewis
I’ve read this and don’t entirely understand the use case. If I am running a service that uses an in-the-clear transport and then experimentally add an encrypted transport, I can see the desire to let the clients know that the latter is experimental and subject to accidental unavailability. Bu

Re: [DNSOP] [Ext] Robert Wilton's No Objection on draft-ietf-dnsop-dns-error-reporting-07: (with COMMENT)

2024-02-13 Thread Roy Arends
Hi Robert, comments below. > On 14 Dec 2023, at 10:02, Robert Wilton via Datatracker > wrote: > > Robert Wilton has entered the following ballot position for > draft-ietf-dnsop-dns-error-reporting-07: No Objection > > When responding, please keep the subject line intact and reply to all > emai

Re: [DNSOP] Zaheduzzaman Sarker's No Objection on draft-ietf-dnsop-dns-error-reporting-07: (with COMMENT)

2024-02-13 Thread Roy Arends
Hi Zahed > On 14 Dec 2023, at 09:43, Zaheduzzaman Sarker > wrote: > > Hi all, > > I will take this discussion as a confirmation that the error reporting is > also applicable to DoQ. In that case, just focusing on TCP might not be the > best solution and it seems like having a general stateme

Re: [DNSOP] [Ext] Paul Wouters' Discuss on draft-ietf-dnsop-dns-error-reporting-07: (with DISCUSS)

2024-02-13 Thread Roy Arends
Hi Paul, > On 13 Dec 2023, at 02:18, Paul Wouters via Datatracker > wrote: > > Paul Wouters has entered the following ballot position for > draft-ietf-dnsop-dns-error-reporting-07: Discuss > > When responding, please keep the subject line intact and reply to all > email addresses included in t

Re: [DNSOP] [Ext] Re: General comment about downgrades vs. setting expectations in protocol definitions

2024-02-13 Thread Manu Bretelle
On Tue, Feb 13, 2024 at 7:35 AM Edward Lewis wrote: > I’ve read this and don’t entirely understand the use case. > > > > If I am running a service that uses an in-the-clear transport and then > experimentally add an encrypted transport, I can see the desire to let the > clients know that the latt

Re: [DNSOP] Tsvart telechat review of draft-ietf-dnsop-dns-error-reporting-07

2024-02-13 Thread Roy Arends
> On 7 Dec 2023, at 12:33, Gorry Fairhurst via Datatracker > wrote: > > Reviewer: Gorry Fairhurst > Review result: Ready with Issues > > This document has been reviewed as part of the transport area review team's > ongoing effort to review key IETF documents. These comments were written > pri

Re: [DNSOP] [Ext] Martin Duke's No Objection on draft-ietf-dnsop-dns-error-reporting-07: (with COMMENT)

2024-02-13 Thread Roy Arends
Hi Martin, Thanks for this. I’ve responded to Gorry just now. Warmly, Roy > On 12 Dec 2023, at 20:36, Martin Duke via Datatracker > wrote: > > Martin Duke has entered the following ballot position for > draft-ietf-dnsop-dns-error-reporting-07: No Objection > > When responding, please keep t

Re: [DNSOP] Éric Vyncke's Yes on draft-ietf-dnsop-dns-error-reporting-07: (with COMMENT)

2024-02-13 Thread Roy Arends
> On 12 Dec 2023, at 08:17, Éric Vyncke via Datatracker > wrote: > > Éric Vyncke has entered the following ballot position for > draft-ietf-dnsop-dns-error-reporting-07: Yes > > When responding, please keep the subject line intact and reply to all > email addresses included in the To and CC l

Re: [DNSOP] Dnsdir telechat review of draft-ietf-dnsop-dns-error-reporting-07

2024-02-13 Thread Roy Arends
Thanks James Roy > On 10 Dec 2023, at 22:28, James Gannon via Datatracker > wrote: > > Reviewer: James Gannon > Review result: Ready > > Hi Folks, > I have reviewed 07 against the feedback on both the -04 and -06 and the > document seems to be in good shape to move forward at this time. Thank

Re: [DNSOP] [Ext] Intdir telechat review of draft-ietf-dnsop-dns-error-reporting-07

2024-02-13 Thread Roy Arends
Hi Carlos, > On 9 Dec 2023, at 14:43, Carlos Pignataro via Datatracker > wrote: > > Reviewer: Carlos Pignataro > Review result: Ready with Nits > > draft-ietf-dnsop-dns-error-reporting > > Hi! > > I was assigned a review of draft-ietf-dnsop-caching-resolution-failures, for > an > INTDIR Tel

Re: [DNSOP] John Scudder's No Objection on draft-ietf-dnsop-dns-error-reporting-07: (with COMMENT)

2024-02-13 Thread Roy Arends
> On 8 Dec 2023, at 21:19, John Scudder via Datatracker > wrote: > > John Scudder has entered the following ballot position for > draft-ietf-dnsop-dns-error-reporting-07: No Objection > > When responding, please keep the subject line intact and reply to all > email addresses included in the T

Re: [DNSOP] [Ext] About key tags

2024-02-13 Thread Mark Andrews
> On 13 Feb 2024, at 00:56, Edward Lewis wrote: > > On 2/9/24, 22:05, "Mark Andrews" wrote: > >> The primary use of the key tag is to select the correct key to validate the >> signature from multiple keys. > > Yes - which is great if 1) you need to pare down the potential set of keys > i

Re: [DNSOP] [Last-Call] Tsvart telechat review of draft-ietf-dnsop-dns-error-reporting-07

2024-02-13 Thread Paul Wouters
On Wed, 14 Feb 2024, Roy Arends wrote: 1. There is a recommendation to use DNS COOKIEs [RFC7873] over UDP (PS), but no statement about how to mitigate the effects when these are not used. What ought someone to do when this is not done? It is recommended that the client (the resolver) sets the