Re: [IPsec] Robert Wilton's Discuss on draft-ietf-ipsecme-add-ike-11: (with DISCUSS and COMMENT)

2023-04-28 Thread Paul Wouters


> On Apr 27, 2023, at 05:48, mohamed.boucad...@orange.com wrote:
> 
> [Med] Do53 is widely used but without a reference. I prefer to maintain in 
> this section. Thanks.  

It’s only in use for the few encrypted DNS related drafts. I wouldn’t say “wide 
use”.

I also think using “unencrypted DNS” is preferred, especially because most 
implemented are IKE developers, not DNS experts.


Paul
___
IPsec mailing list
IPsec@ietf.org
https://www.ietf.org/mailman/listinfo/ipsec


[IPsec] Zaheduzzaman Sarker's Yes on draft-ietf-ipsecme-add-ike-13: (with COMMENT)

2023-04-28 Thread Zaheduzzaman Sarker via Datatracker
Zaheduzzaman Sarker has entered the following ballot position for
draft-ietf-ipsecme-add-ike-13: Yes

When responding, please keep the subject line intact and reply to all
email addresses included in the To and CC lines. (Feel free to cut this
introductory paragraph, however.)


Please refer to 
https://www.ietf.org/about/groups/iesg/statements/handling-ballot-positions/ 
for more information about how to handle DISCUSS and COMMENT positions.


The document, along with other ballot positions, can be found here:
https://datatracker.ietf.org/doc/draft-ietf-ipsecme-add-ike/



--
COMMENT:
--

Thanks for addressing my discuss comments.. the -13 looks good to me.



___
IPsec mailing list
IPsec@ietf.org
https://www.ietf.org/mailman/listinfo/ipsec


[IPsec] I-D Action: draft-ietf-ipsecme-add-ike-13.txt

2023-04-28 Thread internet-drafts


A New Internet-Draft is available from the on-line Internet-Drafts
directories. This Internet-Draft is a work item of the IP Security Maintenance
and Extensions (IPSECME) WG of the IETF.

   Title   : Internet Key Exchange Protocol Version 2 (IKEv2) 
Configuration for Encrypted DNS
   Authors : Mohamed Boucadair
 Tirumaleswar Reddy
 Dan Wing
 Valery Smyslov
   Filename: draft-ietf-ipsecme-add-ike-13.txt
   Pages   : 19
   Date: 2023-04-28

Abstract:
   This document specifies new Internet Key Exchange Protocol Version 2
   (IKEv2) Configuration Payload Attribute Types to assign DNS resolvers
   that support encrypted DNS protocols, such as DNS-over-HTTPS (DoH),
   DNS-over-TLS (DoT), and DNS-over-QUIC (DoQ).

The IETF datatracker status page for this Internet-Draft is:
https://datatracker.ietf.org/doc/draft-ietf-ipsecme-add-ike/

There is also an htmlized version available at:
https://datatracker.ietf.org/doc/html/draft-ietf-ipsecme-add-ike-13

A diff from the previous version is available at:
https://author-tools.ietf.org/iddiff?url2=draft-ietf-ipsecme-add-ike-13

Internet-Drafts are also available by rsync at rsync.ietf.org::internet-drafts


___
IPsec mailing list
IPsec@ietf.org
https://www.ietf.org/mailman/listinfo/ipsec


Re: [IPsec] I-D Action: draft-ietf-ipsecme-add-ike-12.txt

2023-04-28 Thread mohamed.boucadair
Hi all, 

This version implements the changes that were shared in the list to address the 
various IESG reviews, especially from Paul, Rob, and Éric.

Zahed, I wonder whether you checked the thread about the rationale why we are 
not using an update header. Hope this clarifies your concern.

Cheers,
Med

> -Message d'origine-
> De : I-D-Announce  De la part de
> internet-dra...@ietf.org
> Envoyé : vendredi 28 avril 2023 11:08
> À : i-d-annou...@ietf.org
> Cc : ipsec@ietf.org
> Objet : I-D Action: draft-ietf-ipsecme-add-ike-12.txt
> 
> 
> A New Internet-Draft is available from the on-line Internet-Drafts
> directories. This Internet-Draft is a work item of the IP Security
> Maintenance and Extensions (IPSECME) WG of the IETF.
> 
>Title   : Internet Key Exchange Protocol Version 2
> (IKEv2) Configuration for Encrypted DNS
>Authors : Mohamed Boucadair
>  Tirumaleswar Reddy
>  Dan Wing
>  Valery Smyslov
>Filename: draft-ietf-ipsecme-add-ike-12.txt
>Pages   : 19
>Date: 2023-04-28
> 
> Abstract:
>This document specifies new Internet Key Exchange Protocol
> Version 2
>(IKEv2) Configuration Payload Attribute Types to assign DNS
> resolvers
>that support encrypted DNS protocols, such as DNS-over-HTTPS
> (DoH),
>DNS-over-TLS (DoT), and DNS-over-QUIC (DoQ).
> The IETF datatracker status page for this Internet-Draft is:
https://datatracker.ietf.org/doc/draft-ietf-ipsecme-add-ike/

There is also an htmlized version available at:
https://datatracker.ietf.org/doc/html/draft-ietf-ipsecme-add-ike-12

A diff from the previous version is available at:
https://author-tools.ietf.org/iddiff?url2=draft-ietf-ipsecme-add-ike-12

Internet-Drafts are also available by rsync at rsync.ietf.org::internet-drafts

_

Ce message et ses pieces jointes peuvent contenir des informations 
confidentielles ou privilegiees et ne doivent donc
pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce 
message par erreur, veuillez le signaler
a l'expediteur et le detruire ainsi que les pieces jointes. Les messages 
electroniques etant susceptibles d'alteration,
Orange decline toute responsabilite si ce message a ete altere, deforme ou 
falsifie. Merci.

This message and its attachments may contain confidential or privileged 
information that may be protected by law;
they should not be distributed, used or copied without authorisation.
If you have received this email in error, please notify the sender and delete 
this message and its attachments.
As emails may be altered, Orange is not liable for messages that have been 
modified, changed or falsified.
Thank you.

___
IPsec mailing list
IPsec@ietf.org
https://www.ietf.org/mailman/listinfo/ipsec


[IPsec] I-D Action: draft-ietf-ipsecme-add-ike-12.txt

2023-04-28 Thread internet-drafts


A New Internet-Draft is available from the on-line Internet-Drafts
directories. This Internet-Draft is a work item of the IP Security Maintenance
and Extensions (IPSECME) WG of the IETF.

   Title   : Internet Key Exchange Protocol Version 2 (IKEv2) 
Configuration for Encrypted DNS
   Authors : Mohamed Boucadair
 Tirumaleswar Reddy
 Dan Wing
 Valery Smyslov
   Filename: draft-ietf-ipsecme-add-ike-12.txt
   Pages   : 19
   Date: 2023-04-28

Abstract:
   This document specifies new Internet Key Exchange Protocol Version 2
   (IKEv2) Configuration Payload Attribute Types to assign DNS resolvers
   that support encrypted DNS protocols, such as DNS-over-HTTPS (DoH),
   DNS-over-TLS (DoT), and DNS-over-QUIC (DoQ).

The IETF datatracker status page for this Internet-Draft is:
https://datatracker.ietf.org/doc/draft-ietf-ipsecme-add-ike/

There is also an htmlized version available at:
https://datatracker.ietf.org/doc/html/draft-ietf-ipsecme-add-ike-12

A diff from the previous version is available at:
https://author-tools.ietf.org/iddiff?url2=draft-ietf-ipsecme-add-ike-12

Internet-Drafts are also available by rsync at rsync.ietf.org::internet-drafts


___
IPsec mailing list
IPsec@ietf.org
https://www.ietf.org/mailman/listinfo/ipsec