On 15/12/2021 17.41, Ben Schwartz wrote:
We can simply agree that resolvers have no obligation to prefer encrypted nameservers. That means mixed NS-sets will result in fractional DoT rollout, which seems fine.
That would be a question for operators. I imagine some deployments might want to serve encrypted DNS on a different set of IP addresses than normal DNS.
_______________________________________________ dns-privacy mailing list [email protected] https://www.ietf.org/mailman/listinfo/dns-privacy
