On 15/12/2021 17.41, Ben Schwartz wrote:
We can simply agree that resolvers have no obligation to prefer encrypted nameservers.  That means mixed NS-sets will result in fractional DoT rollout, which seems fine.

That would be a question for operators.  I imagine some deployments might want to serve encrypted DNS on a different set of IP addresses than normal DNS.


_______________________________________________
dns-privacy mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dns-privacy

Reply via email to