On Jul 30, 2021, at 11:42 AM, Robert Evans <[email protected]> 
wrote:
> 
> On Thu, Jul 29, 2021 at 6:43 PM Paul Hoffman <[email protected]> wrote:
>> Having a differentiated signal for "I don't expect to be authenticated" 
>> would be good for draft-ietf-dprive-unauth-to-authoritative. I also agree 
>> with the reasoning of the recursive and auth operators who spoke at the mic.
>> 
> Suppose ADoX specifies that SVCB with alpn=dot but without any authentication 
> params implies the same thing. Would that be good enough?
> 

It would be OK. I prefer explicit statements in either direction versus a 
default that has to be understood because then later possible additional states 
will be clearer. Also, as others said at this meeting and earlier meetings, the 
less likely that it is that an authoritative who is just testing can screw this 
up, the better.

--Paul Hoffman

Attachment: smime.p7s
Description: S/MIME cryptographic signature

_______________________________________________
dns-privacy mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dns-privacy

Reply via email to