On 08/01/2021 20:07, Joel M Snyder via mailop wrote:
And even if there were some HSTS-like way to bind certificates to destination domain names, the lack of an interactive moment for the user to say "yes" or "no" to a questionable certificate makes it even worse.
So you don't rate the combo of DANE + DNSSEC + MTA-STS ? -- Tim Bray Huddersfield, GB t...@kooky.org _______________________________________________ mailop mailing list mailop@mailop.org https://list.mailop.org/listinfo/mailop