Re: [Uta] review of smtp-require-tls-02

2016-09-18 Thread Jim Fenton
Apologies for the very late reply; this slipped through the cracks somehow. On 8/22/16 7:53 AM, Jeremy Harris wrote: > On 16/08/16 23:09, Jim Fenton wrote: >> Name:draft-fenton-smtp-require-tls >> Revision:02 > - Section 2, bullet point discussing the DNSSEC parameter: > > S

Re: [Uta] review of smtp-require-tls-02

2016-09-18 Thread Viktor Dukhovni
> On Sep 18, 2016, at 6:47 PM, Jim Fenton wrote: > > Yes; I'm not sure why I singled out MX and CNAME because I know those > aren't the only ways of locating the server. I would propose to change > "confirm that any MX record or CNAME lookup used to locate the SMTP > server" to "confirm that and

Re: [Uta] review of smtp-require-tls-02

2016-09-18 Thread Viktor Dukhovni
> On Aug 22, 2016, at 10:53 AM, Jeremy Harris wrote: > >> draft-fenton-smtp-require-tls ion > Abstract > >The SMTP STARTTLS option, used in negotiating transport-level >encryption of SMTP connections, is not as useful from a security >standpoint as it might be because of its opportu