Greetings. I have read the -10 draft, and think it is ready for moving to the IETF. The authors have done a good job of incorporating comments from the WG.

Because draft-ietf-dprive-dnsodtls might be abandoned in favor of RFC 7858 after someone implements it and compares the two, it is appropriate that this is set to become an Experimental RFC. After testing, if implementers think that there is value to the DTLS version, it can be put on Standards Track. It will be interesting to see how that testing goes when it happens; I'm particularly interested in the tradeoff of "TCP state is kept in the kernel" vs. "session state is kept in the application stack" vs. DoS-by-CPU-exhaustion.

--Paul Hoffman

_______________________________________________
dns-privacy mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dns-privacy

Reply via email to