[dns-privacy] An alternative for DNS privacy

2015-09-30 Thread Witold Kręcicki
Hi all, After the discussions that took place on dprive meeting in Prague I felt that we're losing the point of DNS - it being the very lightweight protocol. I know that DTLS and TLS are great and proven protocols but those were meant to protect streams and communications a few orders larger where

Re: [dns-privacy] Please review documents...

2015-09-30 Thread Paul Hoffman
On 30 Sep 2015, at 11:53, Ted Hardie wrote: Howdy, A quick question about draft-ietf-dprive-dns-over-tls-0: Some previous drafts used ALPN (RFC 7301) tokens to negotiate the use of DNS as an application layer protocol user of TLS. This draft seems to assume that because it is using a

Re: [dns-privacy] Please review documents...

2015-09-30 Thread Warren Kumari
Having heard nothing back, I'm going to have to assume that both of these documents are absolutely completely 100% perfect, and could not be made any better, clearer or more complete... I find this, um, surprising... I'd love to be able to publish these two documents, declare success and shut

Re: [dns-privacy] Please review documents...

2015-09-30 Thread Ilari Liusvaara
On Wed, Sep 30, 2015 at 02:24:49PM -0400, Warren Kumari wrote: > > > I'd love to be able to publish these two documents, declare success > and shut this WG down... but I'm assuming that the WG simply hasn't > finished reviewing these, so, pretty please, review and provide > feedback... Some

Re: [dns-privacy] Please review documents...

2015-09-30 Thread Stephane Bortzmeyer
On Wed, Sep 30, 2015 at 02:24:49PM -0400, Warren Kumari wrote a message of 53 lines which said: > Having heard nothing back, I'm surprised: both Simon Josefsson and me

Re: [dns-privacy] Please review documents...

2015-09-30 Thread Wessels, Duane
Hello Ilari, > On Sep 30, 2015, at 12:23 PM, Ilari Liusvaara > wrote: > > > DNS-over-TLS (-00): > > 1) Section 3.2: > > Is the section about authentication just examples or is it missing > stuff like pinning RPK of the server? I don't feel that section 3.2 is

Re: [dns-privacy] I-D Action: draft-ietf-dprive-dns-over-tls-00.txt

2015-09-30 Thread Wessels, Duane
Hi Stephane, Does this change address your concerns? diff --git a/draft-ietf-dprive-dns-over-tls.xml b/draft-ietf-dprive-dns-over-tls.xml index a0ae144..a40cec8 100644 --- a/draft-ietf-dprive-dns-over-tls.xml +++ b/draft-ietf-dprive-dns-over-tls.xml @@ -394,7 +394,7 @@

Re: [dns-privacy] Please review documents...

2015-09-30 Thread Christian Huitema
On Wednesday, September 23, 2015 7:32 AM, Warren Kumari wrote: > Please review our documents: > https://datatracker.ietf.org/doc/draft-ietf-dprive-dns-over-tls/ > https://datatracker.ietf.org/doc/draft-ietf-dprive-dnsodtls/ > > We would like to see a significant amount of review and discussion >