[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: DNSEXT WGLC: TKEY Renewal Mode-02



> At 13:50 2002-11-14, Ólafur Gudmundsson/DNSEXT co-chair wrote:
> >This is the beginning of a 3 week working group last call.
> >This last call ends on December 6'th.

> The last call on this document resulted in few messages,
> raising two issues:
> 1. the complexity of the protocol
> 2. The document gave impression that some valid TKEY behavior was
outlawed.
>
> The second issue requires minor text change to the document to fix.
> The first issue is much larger and requires more feedback for chairs
> I would like to pose the following questions to the working group
>
> Q: Is the technical description in the document sufficient and complete to
> implement ?
>
> Q: Are there any implementations or are there plans to implement ?
>
> Q: Is this overly complex and we should not do this ?
>
I read over the draft, and it seems complete.  However, I don't know if it
is implemented anywhere, nor has anyone I met plans on implementation.
There might be some hidden pitfalls that come out then.


> Q: Is standards track appropriate for this, is experimental status better
?
>
Unless there is a case for doing secret key rollover in the DNS instead of
some previously known out-of-band method, it should be dropped.  Otherwise,
proceed as experimental due to cost versus benefit. I doubt most DNS
operators will have the need to do secret key exchanges over DNS.

> Silence will be taken as request to chairs to remove this document from
> working group consideration.
> Deadline for feedback is February 20'th.
>
>          Olafur
>

Scott


--
to unsubscribe send a message to namedroppers-request@ops.ietf.org with
the word 'unsubscribe' in a single line as the message text body.
archive: <http://ops.ietf.org/lists/namedroppers/>