--- 1/draft-ietf-dnsop-extended-error-07.txt 2019-08-09 23:13:13.221276921 -0700 +++ 2/draft-ietf-dnsop-extended-error-08.txt 2019-08-09 23:13:13.249277725 -0700 @@ -5,21 +5,21 @@ Expires: February 10, 2020 ISC R. Arends ICANN W. Hardaker USC/ISI D. Lawrence Oracle + Dyn August 09, 2019 Extended DNS Errors - draft-ietf-dnsop-extended-error-07 + draft-ietf-dnsop-extended-error-08 Abstract This document defines an extensible method to return additional information about the cause of DNS errors. Though created primarily to extend SERVFAIL to provide additional information about the cause of DNS and DNSSEC failures, the Extended DNS Errors option defined in this document allows all response types to contain extended error information. @@ -342,23 +342,23 @@ TBD Extended DNS Error TBD [ This document ] 5.2. New Double-Index Registry Table for Extended Error Codes This document defines a new double-index IANA registry table, where the index value is the INFO-CODE from the Extended DNS Error EDNS option defined in this document. The IANA is requested to create and maintain this "Extended DNS Error codes" registry. The code-point space for each INFO-CODE index is to be broken into 3 ranges: - o 0 - : Specification required. - o 65023 - 65279: First come, first served. - o 65280 - 32767: Experimental / Private use + o 0 - 32767: Specification required. + o 32768 - 49151: First come, first served. + o 49152 - 65535: Experimental / Private use A starting set of entries, based on the contents of this document, is as follows: INFO-CODE: 0 Purpose: Other Error Reference: Section 4.1 INFO-CODE: 1 Purpose: Unsupported DNSKEY Algorithm @@ -461,27 +461,28 @@ response into already untrusted data -- ideally clients and resolvers would not trust any unauthenticated information, but until we live in an era where all DNS answers are authenticated via DNSSEC or other mechanisms, there are some tradeoffs. As an example, an attacker who is able to insert the DNSSEC Bogus Extended Error into a packet could instead simply reply with a fictitious address (A or AAAA) record. 7. Acknowledgements The authors wish to thank Joe Abley, Mark Andrews, Stephane - Bortzmeyer, Vladimir Cunat, Peter DeVries, Peter van Dijk, Donald - Eastlake, Bob Harold, Geoff Huston, Shane Kerr, Edward Lewis, Carlos - M. Martinez, George Michelson, Michael Sheldon, Petr Spacek, Ondrej - Sury, Loganaden Velvindron, and Paul Vixie. They also vaguely - remember discussing this with a number of people over the years, but - have forgotten who all they were -- if you were one of them, and are - not listed, please let us know and we'll acknowledge you. + Bortzmeyer, Vladimir Cunat, Ralph Dolmans, Peter DeVries, Peter van + Dijk, Donald Eastlake, Bob Harold, Geoff Huston, Shane Kerr, Edward + Lewis, Carlos M. Martinez, George Michelson, Michael Sheldon, Puneet + Sood, Petr Spacek, Ondrej Sury, Loganaden Velvindron, and Paul Vixie. + They also vaguely remember discussing this with a number of people + over the years, but have forgotten who all they were -- if you were + one of them, and are not listed, please let us know and we'll + acknowledge you. I also want to thank the band "Infected Mushroom" for providing a good background soundtrack (and to see if I can get away with this!) Another author would like to thank the band "Mushroom Infectors". This was funny at the time we wrote it, but we cannot remember why... 8. References 8.1. Normative References