diff options
Diffstat (limited to 'draft-schanzen-gns.xml')
-rw-r--r-- | draft-schanzen-gns.xml | 18 |
1 files changed, 14 insertions, 4 deletions
diff --git a/draft-schanzen-gns.xml b/draft-schanzen-gns.xml index 94942c2..6e4fd57 100644 --- a/draft-schanzen-gns.xml +++ b/draft-schanzen-gns.xml | |||
@@ -2772,11 +2772,21 @@ NICK: john (Supplemental) | |||
2772 | <section anchor="namespace_ambiguity"> | 2772 | <section anchor="namespace_ambiguity"> |
2773 | <name>Namespace Ambiguity</name> | 2773 | <name>Namespace Ambiguity</name> |
2774 | <t> | 2774 | <t> |
2775 | Some GNS names are indistinguishable from DNS names in their | 2775 | Technically, the GNS protocol can be used to resolve names in the |
2776 | namespace of the global DNS. | ||
2777 | However, this would require the respective governance bodies and | ||
2778 | stakeholders to standardize the use of GNS for this particular use | ||
2779 | case and publish their zones accordingly. | ||
2780 | </t> | ||
2781 | <t> | ||
2782 | However, this capability means that by definition GNS names may be | ||
2783 | indistinguishable from DNS names in their | ||
2776 | respective common display format <xref target="RFC8499"/> or | 2784 | respective common display format <xref target="RFC8499"/> or |
2777 | other special-use domain names <xref target="RFC6761"/>. | 2785 | other special-use domain names <xref target="RFC6761"/> given |
2778 | Given such a name it is ambiguous which name system should be used | 2786 | a local GNS start zone configuration that maps suffixes from the |
2779 | by an application in order to resolve it. | 2787 | global DNS to GNS zones. |
2788 | For applications, it is then ambiguous which name system should be | ||
2789 | used in order to resolve a given name. | ||
2780 | This poses a risk when trying to resolve a name through DNS when | 2790 | This poses a risk when trying to resolve a name through DNS when |
2781 | it is actually a GNS name. | 2791 | it is actually a GNS name. |
2782 | In such a case, the GNS name is likely to be leaked as part of the DNS | 2792 | In such a case, the GNS name is likely to be leaked as part of the DNS |