On Wed, 14 Dec 2016, Paul Hoffman wrote:

Exactly. Further, you have to negotiate in IPsec which ports and addresses within the "range of one target address" the client has access to, and that (you would think simple) negotiation has proven too difficult for some IPsec developers in the past.

It's not 1999 anymore. Negotiating IP addresses and ports for DNS is not
a problem in the slightest.

Paul

_______________________________________________
dns-privacy mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dns-privacy

Reply via email to