On Feb 12, 2019, at 11:04 AM, Paul Vixie <[email protected]> wrote: > actually, there are other choices.
I may have failed to communicate. What I mean is that you said that you can detect all nefarious traffic, but you can’t detect DoH, which to you is nefarious. What I’m saying is that there’s no such distinction, or at least if there is at present, it is a temporary situation. Of course you have choices about what to do about this; my point is not to suggest that you do not.
_______________________________________________ DNSOP mailing list [email protected] https://www.ietf.org/mailman/listinfo/dnsop
