Re: [DNSOP] Draft Reverse DNS in IPv6 for Internet Service Providers

2014-10-23 Thread P Vixie
Ohta-san, like you I would like to see stateless address auto configuration for ipv6 (SLAAC) die in a fire. Sadly this outcome is beyond our powers. Let's start from where we are, no matter how unpleasant that place may be. Vixie -- Sent from my Android device with K-9 Mail. Please excuse my bre

Re: [DNSOP] Draft Reverse DNS in IPv6 for Internet Service Providers

2014-10-23 Thread Masataka Ohta
Paul Vixie wrote: > william simpson was right in 1996. we should have moved "get host > name corresponding to IP" to ICMP. the problems described by lee > howard's draft are proof that our whole model is wrong. Wrong. What's wrong is SLAAC, which is stateful in the worst possible fashion with d

Re: [DNSOP] Draft Reverse DNS in IPv6 for Internet Service Providers

2014-10-23 Thread Paul Vixie
> Ted Lemon > Thursday, October 23, 2014 11:16 AM > > Right, 'cuz there's nothing at all difficult about getting ICMP to > work... :) understood. but that's part of what makes this a good solution. systems need to learn to live with hosts whose names they cannot gu

Re: [DNSOP] Draft Reverse DNS in IPv6 for Internet Service Providers

2014-10-23 Thread Ted Lemon
On Oct 23, 2014, at 1:50 PM, Paul Vixie wrote: > william simpson was right in 1996. we should have moved "get host name > corresponding to IP" to ICMP. the problems described by lee howard's draft > are proof that our whole model is wrong. Right, 'cuz there's nothing at all difficult about gett

Re: [DNSOP] Draft Reverse DNS in IPv6 for Internet Service Providers

2014-10-23 Thread Paul Vixie
> Ted Lemon > Thursday, October 23, 2014 7:02 AM > > For me at least the main values of the reverse DNS are: > > - answers the question "what host is contacting me" in situations > where I am _not_ under attack, which is really useful in logs and > other debugging a

Re: [DNSOP] Draft Reverse DNS in IPv6 for Internet Service Providers

2014-10-23 Thread Lee Howard
From: Mwendwa Kivuva Date: Thursday, October 23, 2014 7:23 AM To: dnsop Subject: [DNSOP] Draft Reverse DNS in IPv6 for Internet Service Providers > Refering to the draft by Lee Howard > https://tools.ietf.org/html/draft-howard-dnsop-ip6rdns-00 > > and given the weakness of the Reverse DNS

Re: [DNSOP] Draft Reverse DNS in IPv6 for Internet Service Providers

2014-10-23 Thread Ted Lemon
On Oct 23, 2014, at 7:23 AM, Mwendwa Kivuva wrote: > and given the weakness of the Reverse DNS access for security purposes, what > problem is this draft trying to solve? If we need to find the host that has > sent an email associated with an address, would we better let DKIM address > that wit

Re: [DNSOP] Draft Reverse DNS in IPv6 for Internet Service Providers

2014-10-23 Thread Hosnieh Rafiee
and given the weakness of the Reverse DNS access for security purposes, what problem is this draft trying to solve? If we need to find the host that has sent an email associated with an address, would we better let DKIM address that without a separate lookup in the receiving server? DKIM detec

[DNSOP] Draft Reverse DNS in IPv6 for Internet Service Providers

2014-10-23 Thread Mwendwa Kivuva
Refering to the draft by Lee Howard https://tools.ietf.org/html/draft-howard-dnsop-ip6rdns-00 and given the weakness of the Reverse DNS access for security purposes, what problem is this draft trying to solve? If we need to find the host that has sent an email associated with an address, would we