> -----Original Message-----
> From: Paul Hoffman <[email protected]>
> Sent: Monday, August 16, 2021 11:28 AM
> To: Hollenbeck, Scott <[email protected]>
> Cc: [email protected]
> Subject: [EXTERNAL] Re: [dns-privacy] [Ext] Security Considerations: Traffic
> Analysis
>
> On Aug 16, 2021, at 7:51 AM, Hollenbeck, Scott
> <[email protected]> wrote:
> >
> > [SAH] The act of encrypting may mislead someone into thinking that their
> confidentiality concerns have been completely addressed.
>
> Neither of the proposed protocols have any way for an end user to know
> what part of the recursive-to-authoritative traffic used to answer their query
> (if any) was encrypted.

[SAH] It's not just about end users. Operators who implement and deploy this 
technology need to understand its limitations.

> > In lieu of the text I proposed, yes, references to RFCs such as 8932 and 
> > 9076
> could help make it clear that privacy considerations remain even if encryption
> is used.
>
> We'll do that.

[SAH] Thanks!

Scott

_______________________________________________
dns-privacy mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dns-privacy

Reply via email to