On 2/13/19 10:45 PM, Henderson, Karl wrote: > > Couldn’t DoT also run over port 443 just like DOH -– similar to what’s > been proposed in this > draft?: https://datatracker.ietf.org/doc/draft-dkg-dprive-demux-dns-http/ > Technically you can run DoT on whatever port you like. I believe the port number argument and non-recognizability from https are mainly red herrings when comparing DoH with DoT. And there are more, as the two protocols share almost all properties.
Example: with knot-resolver it's easy - you just add @443, either on side of server and/or on the side of forwarding over TLS. --Vladimir
_______________________________________________ DNSOP mailing list DNSOP@ietf.org https://www.ietf.org/mailman/listinfo/dnsop