On 28 Oct 2016, at 8:27, Bob Harold wrote:
In Section 5 on Opportunistic Privacy, I am not sure "MAY" is correct.
If
the user chooses Opportunistic, I would think the server MUST try to
be
secure, in whatever ways are possible, but MAY fall back to less
secure,
only if those fail.
In TLS, it's not the server that tries to be secure, it's the client.
The server offers a bunch of stuff, but only once. The client picks, but
only once.
--Paul Hoffman
_______________________________________________
dns-privacy mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dns-privacy