Re: [dns-privacy] DNS over TLS and framing

2014-11-13 Thread Paul Hoffman
On Nov 12, 2014, at 9:03 PM, Francis Dupont francis.dup...@fdupont.fr wrote: Does DNS over TLS use the TLS framing (aka TLS Record Protocol) or does it prefix messages by a two byte length field as for DNS over TCP (cf RFC 1035 4.2.2 TCP usage)? I believe it is the second but *no* DNS over TLS

Re: [dns-privacy] DNS over TLS and framing

2014-11-13 Thread John Heidemann
On Thu, 13 Nov 2014 08:03:02 +0100, Francis Dupont wrote: Does DNS over TLS use the TLS framing (aka TLS Record Protocol) or does it prefix messages by a two byte length field as for DNS over TCP (cf RFC 1035 4.2.2 TCP usage)? I believe it is the second but *no* DNS over TLS proposal specify this

Re: [dns-privacy] DNS over TLS and framing

2014-11-13 Thread Mankin, Allison
Also: We'll want to add guidance here and/or in 5966bis though that helps implementations avoid sending a two byte TCP segment followed by another segment immediately. This came up during questions during John Dickinson's 5966bis presentation in DNSOP. On Nov 13, 2014, at 7:28, John

[dns-privacy] DNS over TLS and framing

2014-11-12 Thread Francis Dupont
Does DNS over TLS use the TLS framing (aka TLS Record Protocol) or does it prefix messages by a two byte length field as for DNS over TCP (cf RFC 1035 4.2.2 TCP usage)? I believe it is the second but *no* DNS over TLS proposal specify this point. Thanks francis.dup...@fdupont.fr