pull requests

164 views
Skip to first unread message

Michal Krajčírovič

unread,
Nov 27, 2018, 6:23:35 AM11/27/18
to psl-discuss
Hi,
please how often are processing pull requests? 

thanks, m

mark.sa...@banzaicloud.com

unread,
Mar 30, 2019, 5:00:33 PM3/30/19
to psl-discuss
Hi,

I know this list should not be used for submitting amendments to the PSL, but we (Banzai Cloud) tried to communicate with the maintainers on many channels and we received now answer at all. As far as I can see, we are not alone.

In November we submitted an amendment (https://github.com/publicsuffix/list/pull/730) to the public suffix list. We haven't received any answer and we kinda reached an edge in our situation where even an explicit rejection would be better than no answer at all. (Obviously accepting the request would be the best option for us :) )

Let me explain: we at Banzai Cloud provide an application platform based on Kubernetes to our users. Since most of the technology we work with is part of the CNCF (which we are also a member of) and open source, we would like to give back to the community as much as possible. That's why we provide a completely free version of our platform to our users.

As part of the public platform, we delegate DNS zones to our users under our domain (.beta.banzaicloud.io) which they can manage themselves, or let our platform take care of it by automatically registering the necessary records for them.

Additionally to this DNS feature, we would like to provide our users automatic SSL certificates issued by Let's Encrypt. Unfortunately, without the public suffix entry Let's Encrypt rate limits our main domain and essentially renders the feature useless, so at the moment it's turned off.

We are currently under a lot of pressure from our community users, because they cannot use let's encrypt issued certificates at the moment. For the past few months we were able to stall them, but that's not working anymore. As long as there is hope we can make it work, we don't want to turn our community down, but we have to tell them something sooner or later.

This is kind of a last resort for us as all the other public (and private) channels failed so far. If this isn't the right channel, please direct me to the right one.

Thanks in advance,

Márk Sági-Kazár
Senior Software Engineer
Banzai Cloud

Ryan Sleevi

unread,
Mar 30, 2019, 5:22:18 PM3/30/19
to mark.sa...@banzaicloud.com, psl-discuss
On Sat, Mar 30, 2019 at 5:00 PM <mark.sa...@banzaicloud.com> wrote:
I know this list should not be used for submitting amendments to the PSL, but we (Banzai Cloud) tried to communicate with the maintainers on many channels and we received now answer at all. As far as I can see, we are not alone.

You are correct that this is not the appropriate venue for such a discussion.

You did not receive acknowledgement from harassing the maintainers because the policies are published and there was a queue of domains. The constant pestering caused the tools we use to prioritize to consistently place you in the back of the queue every time you unnecessarily pinged the issue. Had you not, your issue would have been more timely responded to. As it stands, you are near the back of the queue for responses to process.

That said, as it seems your concerns are primarily about Let's Encrypt rate limits, the Guidelines already cover the expectations. Requests for additions to the PSL to bypass LE rate limits will be and are closed with prejudice. 

Simone Carletti

unread,
Mar 31, 2019, 4:35:09 PM3/31/19
to Ryan Sleevi, mark.sa...@banzaicloud.com, psl-discuss
Mark,

On top of what Ryan already wrote here, I want to highlight that in the response I sent to your private email I explained pretty much what Ryan explained here, and I also asked you an explicit question about LE. However, it looks like you deliberately ignored my response given this email.

I wish Ryan and myself could use our time in a more productive way than writing replies that are then ignored.

-- Simone


--
You received this message because you are subscribed to the Google Groups "psl-discuss" group.
To unsubscribe from this group and stop receiving emails from it, send an email to publicsuffix-dis...@googlegroups.com.
To post to this group, send email to publicsuff...@googlegroups.com.
To view this discussion on the web, visit https://groups.google.com/d/msgid/publicsuffix-discuss/CACvaWvYZEZ%3DsJQgxwP5C%2B0RGUt7qkZyXxzMf3fZre3tbdMX4uQ%40mail.gmail.com.
For more options, visit https://groups.google.com/d/optout.

Márk Sági-Kazár

unread,
Mar 31, 2019, 5:26:49 PM3/31/19
to Simone Carletti, Ryan Sleevi, psl-discuss
Hi Simone and Ryan,

I'm sorry if our communication attempts felt like harassment. We probably missed those policies Ryan referred to (although I honestly can't find anything about contacting the maintainers or asking about the status of a PR or if it is even in any kind of queue for consideration). I sincerely apologize if I was/we were out of the line.

Simone!

I'm really sorry about your answer being ignored. Actually, it ended up in my spam folder (but believe me, I checked my mail like every minute waiting for your answer):

Screenshot 2019-03-31 at 22.47.36.png

I marked it as not spam (please consider this email as my answer). I'm happy to provide you any information in private if you want to investigate if your private email address is on some kind of blacklist.

To answer your question: Yes, we contacted Let's Encrypt, but as far as I know, we haven't received any answer (I would have to ask my colleague though, because he was the one handling that thread).

Just to clarify: we would like to provide free DNS services to our community users, who don't have their own domain. The problem is that the rate limit essentially makes it impossible for our users to issue certificates for their own zones (cut from our main domain banzaicloud.io). We are not trying to bypass the rate limit for ourselves, but give our users the ability to use Let's Encrypt when they use our subdomains delegated to them.

There are also other things to consider when it comes to these delegated zones (for example restricting cookie setting), which is why we decided to pursue the PSL amendment instead of the Let's Encrypt rate limit increase.

We did some research based on past PRs, and it seemed that other services providing similar free DNS services got accepted into the list. We tried to follow their example to make our case.

Anyway, I'm not going to push the matter anymore (especially not, that I know that we are at the end of the queue). I only did so far, because I had no idea what was going on.

Again, please accept my apology for any disturbance I may have caused.

Best regards,
Márk Sági-Kazár

Michal Krajcirovic

unread,
Mar 31, 2019, 5:59:46 PM3/31/19
to psl-discuss
Hello,
you don't have to apologize, everything you write is true.

Is a catastrophe if someone takes exclusive power and does not exercise it. We're all trapped.

I complained that my request was pending for several months. The answer to me was that something was wrong, no one else told me specifically, I was relying on another request that somebody urged - it's all right, there's no objection, and they don't do anything about it anyway.

They talking about any problem, ok, i will fix it when everyone say me, what problem. They send me only link to this request: https://github.com/publicsuffix/list/pull/733 - too from 25 Nov, too still waiting.

> publicsuffix - really thank you for your work. Many of us have problems what waiting to your action!

Michal Krajcirovic
On bře 31 2019, at 11:26 pm, Márk Sági-Kazár <mark.sa...@banzaicloud.com> wrote:
Hi Simone and Ryan,

I'm sorry if our communication attempts felt like harassment. We probably missed those policies Ryan referred to (although I honestly can't find anything about contacting the maintainers or asking about the status of a PR or if it is even in any kind of queue for consideration). I sincerely apologize if I was/we were out of the line.

Simone!

I'm really sorry about your answer being ignored. Actually, it ended up in my spam folder (but believe me, I checked my mail like every minute waiting for your answer):

I marked it as not spam (please consider this email as my answer). I'm happy to provide you any information in private if you want to investigate if your private email address is on some kind of blacklist.

To answer your question: Yes, we contacted Let's Encrypt, but as far as I know, we haven't received any answer (I would have to ask my colleague though, because he was the one handling that thread).

Just to clarify: we would like to provide free DNS services to our community users, who don't have their own domain. The problem is that the rate limit essentially makes it impossible for our users to issue certificates for their own zones (cut from our main domain banzaicloud.io). We are not trying to bypass the rate limit for ourselves, but give our users the ability to use Let's Encrypt when they use our subdomains delegated to them.

There are also other things to consider when it comes to these delegated zones (for example restricting cookie setting), which is why we decided to pursue the PSL amendment instead of the Let's Encrypt rate limit increase.

We did some research based on past PRs, and it seemed that other services providing similar free DNS services got accepted into the list. We tried to follow their example to make our case.

Anyway, I'm not going to push the matter anymore (especially not, that I know that we are at the end of the queue). I only did so far, because I had no idea what was going on.

Again, please accept my apology for any disturbance I may have caused.

Best regards,
Márk Sági-Kazár

Sent from Mailspring
On Sun, Mar 31, 2019 at 10:35 PM Simone Carletti <wep...@weppos.net> wrote:
Mark,

On top of what Ryan already wrote here, I want to highlight that in the response I sent to your private email I explained pretty much what Ryan explained here, and I also asked you an explicit question about LE. However, it looks like you deliberately ignored my response given this email.

I wish Ryan and myself could use our time in a more productive way than writing replies that are then ignored.

-- Simone


On Sat, Mar 30, 2019 at 10:22 PM 'Ryan Sleevi' via psl-discuss <publicsuff...@googlegroups.com> wrote:


On Sat, Mar 30, 2019 at 5:00 PM <mark.sa...@banzaicloud.com> wrote:
I know this list should not be used for submitting amendments to the PSL, but we (Banzai Cloud) tried to communicate with the maintainers on many channels and we received now answer at all. As far as I can see, we are not alone.

You are correct that this is not the appropriate venue for such a discussion.

You did not receive acknowledgement from harassing the maintainers because the policies are published and there was a queue of domains. The constant pestering caused the tools we use to prioritize to consistently place you in the back of the queue every time you unnecessarily pinged the issue. Had you not, your issue would have been more timely responded to. As it stands, you are near the back of the queue for responses to process.

That said, as it seems your concerns are primarily about Let's Encrypt rate limits, the Guidelines already cover the expectations. Requests for additions to the PSL to bypass LE rate limits will be and are closed with prejudice. 

--
You received this message because you are subscribed to the Google Groups "psl-discuss" group.
To unsubscribe from this group and stop receiving emails from it, send an email to publicsuffix-dis...@googlegroups.com.
To post to this group, send email to publicsuff...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.

--
You received this message because you are subscribed to a topic in the Google Groups "psl-discuss" group.
To unsubscribe from this group and all its topics, send an email to publicsuffix-dis...@googlegroups.com.
To post to this group, send email to publicsuff...@googlegroups.com.
Reply all
Reply to author
Forward
0 new messages