> On Mar 9, 2016, at 9:19 AM, John Heidemann <[email protected]> wrote:
> 
>>> 
>>> Wrt this comment, I would suggest:
>>> 
>>>     Use of port 53 for DNS-over-TLS is prohibited to avoid
>>>     complication in selecting use or non-use of TLS,
>>>     and to reduce risk of downgrade attacks.
>> 
>>   I missed this follow-up prior to responding to Duane...
>> 
>>   My suggestion is replacing "prohibited" with "not recommended".
>> 
>> No hats here, but I like that.
> 
> I checked in with this text:
> 
>          This recommendation against use of port 53 for DNS-over-TLS
>         is to avoid
>          complication in selecting use or non-use of TLS,
>          and to reduce risk of downgrade attacks.
> 
> 
> to avoid the "...not recommended to avoid..." double negative.


Thanks John.  If everyone is okay with that, then I believe we have addressed
all of Brian's comments?

DW


_______________________________________________
dns-privacy mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dns-privacy

Reply via email to