Hi Mohamed,

I may well have missed some nuance in the discussion that came before, but I 
found this comment interesting:

On Oct 13, 2022, at 03:41, [email protected] wrote:

> This specification targets typical broadband services in which the use of ECH 
> is not relevant. It does not make sense for ISPs to be hosting multiple 
> domains on the same IP address as the encrypted DNS resolver.

Can you say why?

If an operator has invested in infrasructure designed to be able to handle TLS 
and HTTP at high volumes with high availability, does it not seem possible that 
they would seek to reuse that general TLS/HTTP infrastructure for multiple 
purposes? If ECH is relevant in other services carried over HTTPS, why is it 
definitively not relevant for this one?


Joe
_______________________________________________
OPSAWG mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/opsawg

Reply via email to