We recently posted draft-hzhwm-start-tls-for-dns-00 ("Starting TLS over DNS") to explore one proposal to add standard TLS over standard DNS to improve privacy. http://tools.ietf.org/html/draft-hzhwm-start-tls-for-dns-00
This topic may be of interest to DNSOP and PERPASS. Some of the authors will be at the London IETF and can discuss it at the DNS privacy BOF if there is interest. An obvious concern about combining DNS and TLS is the performance implications, both for client latency and server state. The above i-d focuses only on the protocol parts, but we have a separate technical report at ftp://ftp.isi.edu/isi-pubs/tr-688.pdf that evaluates these questions. We would love feedback on either document. thanks -Zi Hu
_______________________________________________ DNSOP mailing list DNSOP@ietf.org https://www.ietf.org/mailman/listinfo/dnsop