In message <[email protected]>, Simon Josefsson writes: > The document says "Protocol changes proposed here must consider > potential interactions with middle boxes." and then goes on to introduce > the two concepts of upgrade-based and port-based DNS-over-TLS. To me > this looks as if behaviour of middle boxes were allowed to significantly > influence the design of the protocol. What I'm questioning is whether > this has lead to too high complexity that can harm rate of adoption. > > /Simon
If a middle box does not respond it is broken. We need to stop pandering to broken middle boxes. Most of them will pass stuff especially the dumb proxies. If a middle box does not like the query it can send back FORMERR / NOTIMP. Mark -- Mark Andrews, ISC 1 Seymour St., Dundas Valley, NSW 2117, Australia PHONE: +61 2 9871 4742 INTERNET: [email protected] _______________________________________________ dns-privacy mailing list [email protected] https://www.ietf.org/mailman/listinfo/dns-privacy
