adding dns-privacy to the thread.
Yours,
Daniel

On Fri, Dec 2, 2022 at 4:35 PM Michael Richardson <[email protected]>
wrote:

>
> https://www.ietf.org/rfc/rfc9103.html#name-mutual-tls tells me how I could
> use mutual TLS to authenticate (and I think, authorize) a zone transfer.
>
> What it does not tell me is whether there should be any Extended Key Usage
> bits set on the certificates.  Are the WebServer/WebClient required?
> forbidden? tolerated?
>
> --
> Michael Richardson <[email protected]>   . o O ( IPv6 IøT consulting )
>            Sandelman Software Works Inc, Ottawa and Worldwide
>
>
>
>
> _______________________________________________
> DNSOP mailing list
> [email protected]
> https://www.ietf.org/mailman/listinfo/dnsop
>


-- 
Daniel Migault
Ericsson
_______________________________________________
dns-privacy mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dns-privacy

Reply via email to