Re: [tor-dev] Tor and DNS - draft finalized into proposal

2012-03-15 Thread Ondrej Mikle
On 03/12/2012 07:08 PM, Nick Mathewson wrote: > On Sat, Mar 10, 2012 at 9:22 AM, Ondrej Mikle wrote: >> >> 1. Design >> >> 1.1 New cells >> >> There will be two new cells, RELAY_DNS_BEGIN and RELAY_DNS_RESPONSE (we'll >> use DNS_BEGIN and DNS_RESPONSE for short below). >> >> DNS_BEGIN payload:

Re: [tor-dev] Tor and DNS - draft finalized into proposal

2012-03-12 Thread Nick Mathewson
On Sat, Mar 10, 2012 at 9:22 AM, Ondrej Mikle wrote: > Hi all, > > the DNS/DNSSEC resolving draft for seems to be finished. Hi, Ondrej! I've got a few questions and comments. I might have more once I've thought a little more about the issues on this. > I added a few thoughts on mitigating cir

Re: [tor-dev] Tor and DNS - draft finalized into proposal

2012-03-10 Thread Ondrej Mikle
On 03/10/2012 03:22 PM, Ondrej Mikle wrote: > > The draft is here (full text pasted at the end of this mail): > > https://github.com/hiviah/torspec/blob/master/proposals/ideas/xxx-dns-dnssec.txt Just a quick fix, I've noticed I have two sections named "Implementation notes". s/9. Implementation

[tor-dev] Tor and DNS - draft finalized into proposal

2012-03-10 Thread Ondrej Mikle
Hi all, the DNS/DNSSEC resolving draft for seems to be finished. I added a few thoughts on mitigating circuit correlation (mentioned in proposal 171). Somebody could look at those if they are not totally stupid (last two paragraphs of section 7). A note is added about the "DNSSEC stapling" [1] (