On Mon, 4 Nov 2019, Stephane Bortzmeyer wrote:
Not all resolvers are big boxes in the central datacenter. I may want to run a resolver on a small box at home even if my ISP blocks port 853.
I don't think anyone expects port 53 to go away.
I tend to agree with Stephen Farrell here. If we insist on perfect resistance to active attackers, we may never deploy anything.
Same answer, port 853 is additional to port 53.
For signaling, my personal preference goes to DANE, anyway.
I'll add it to the list. Regards, John Levine, [email protected], Taughannock Networks, Trumansburg NY "I dropped the toothpaste", said Tom, crestfallenly. _______________________________________________ dns-privacy mailing list [email protected] https://www.ietf.org/mailman/listinfo/dns-privacy
