Re: [DNSOP] [Ext] Re: draft-ietf-dnsop-extended-error and combinations of EDEs and RCODEs

2019-09-10 Thread Evan Hunt
On Wed, Sep 11, 2019 at 12:42:53AM +, Paul Hoffman wrote: > Thanks. However, I still think this opens a lot of security holes if > developers try to be "smart" by assuming that some EDEs only make sense > with some RCODEs. If I'm in the rough, I'll be quiet. Sorry, I'm a bit slow tonight; can

Re: [DNSOP] I-D Action: draft-ietf-dnsop-dns-zone-digest-01.txt

2019-09-10 Thread Richard Gibson
The following excerpts allow for and even encourage software written against this document in its present form to behave in ways that will hinder adoption of future changes, and should probably be altered in order to foster the desired compatibility. Section 2 requires "Each ZONEMD RR MUST

[DNSOP] I-D Action: draft-ietf-dnsop-extended-error-09.txt

2019-09-10 Thread internet-drafts
A New Internet-Draft is available from the on-line Internet-Drafts directories. This draft is a work item of the Domain Name System Operations WG of the IETF. Title : Extended DNS Errors Authors : Warren Kumari Evan Hunt

Re: [DNSOP] I-D Action: draft-ietf-dnsop-extended-error-07.txt

2019-09-10 Thread Wes Hardaker
Loganaden Velvindron writes: Hi Loganaden, Thanks for the comments about the EDE draft. I've marked up your comments with responses and actions below. Let us know if you have any questions. 11 Loganaden Velvindron == 11.1 NOCHANGE pass-through

Re: [DNSOP] [Ext] Re: draft-ietf-dnsop-extended-error and combinations of EDEs and RCODEs

2019-09-10 Thread Tim Wicinski
it sounds to me that a discussion on assumptions with EDEs and RCODES would be useful in the security considerations section as well. and Wes, it should be "Receivers MUST be" and not "Receives MUST be" in your last sentence. Tim On Tue, Sep 10, 2019 at 8:43 PM Paul Hoffman wrote: > On Sep

Re: [DNSOP] [Ext] Re: draft-ietf-dnsop-extended-error and combinations of EDEs and RCODEs

2019-09-10 Thread Paul Hoffman
On Sep 10, 2019, at 4:02 PM, Wes Hardaker wrote: > > Paul Hoffman writes: > >> On Sep 9, 2019, at 9:05 PM, Wes Hardaker wrote: >>> >>> Paul Hoffman writes: >>> >>> Hi Paul, >>> >>> Thanks for the comments and good suggestions. Responses below inside my >>> todo list of action: >>> >>>

Re: [DNSOP] I-D Action: draft-ietf-dnsop-dns-zone-digest-01.txt

2019-09-10 Thread Wessels, Duane
Thanks Shane & George, I agree this needs some clarification. Something thats probably missing from the document is that in any future revision of ZONEMD we expect backwards compatibility. For this version, it is expected that Reserved is set to zero. In a future version, if the formerly

Re: [DNSOP] draft-ietf-dnsop-extended-error and combinations of EDEs and RCODEs

2019-09-10 Thread Wes Hardaker
Paul Hoffman writes: > On Sep 9, 2019, at 9:05 PM, Wes Hardaker wrote: > > > > Paul Hoffman writes: > > > > Hi Paul, > > > > Thanks for the comments and good suggestions. Responses below inside my > > todo list of action: > > > > 12 Paul Hoffman > > === > > > > Greetings

[DNSOP] draft-ietf-dnsop-extended-error and combinations of EDEs and RCODEs

2019-09-10 Thread Paul Hoffman
On Sep 9, 2019, at 9:05 PM, Wes Hardaker wrote: > > Paul Hoffman writes: > > Hi Paul, > > Thanks for the comments and good suggestions. Responses below inside my > todo list of action: > > 12 Paul Hoffman > === > > Greetings again. The changes here generally help the