The datatracker tells us that draft-ietf-dprive-dtls-and-tls-profiles
has a DISCUSS "This needs to be updated to indicate that the client
MUST NOT offer 7250 unless it has a preconfigured SPKI, otherwise
you're going to have interop problems." The DISCUSS was against -09,
the current version is -11 (1.5 months old) which does address the
problem "A client MUST only indicate support for raw public keys if it
has an SPKI pinset pre-configured (for interoperability reasons)."

Therefore, what's the problem with
draft-ietf-dprive-dtls-and-tls-profiles?

_______________________________________________
dns-privacy mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dns-privacy

Reply via email to