On Thu, 31 Oct 2019, Brian Dickson wrote:
IMNSHO, ADoT at the leaf + QNAME minimization is all that is required for privacy. I.e. No need for ADoT anywhere other than at the leaf zone's name server (whose NS name might not be in-bailiwick, FYI).
I dunno, I can think of some 2LD queries that might leak interesting stuff. Does it really matter which subdomain of mega-xxx-babes.com I'm looking at?
Regards, John Levine, [email protected], Taughannock Networks, Trumansburg NY Please consider the environment before reading this e-mail. https://jl.ly _______________________________________________ dns-privacy mailing list [email protected] https://www.ietf.org/mailman/listinfo/dns-privacy
