On Wed, Feb 7, 2018 at 6:22 PM, Ben Campbell <b...@nostrum.com> wrote:

> Ben Campbell has entered the following ballot position for
> draft-ietf-tls-dnssec-chain-extension-06: Yes
>
> ----------------------------------------------------------------------
> COMMENT:
> ----------------------------------------------------------------------
>
> I am happy to see this published, but have a few minor comments:
>
> - I agree with Alexey's comments.
>

Yup, addressed previously in email ..


>
> -3.4: "If the TLSA record set was synthesized by a DNS wildcard, the chain
>    must include the signed NSEC or NSEC3 records that prove that there
>    was no explicit match of the TLSA record name and no closer wildcard
>    match."
>
> Should that "must" be a "MUST"?
>

Yes, thanks for catching that.


>
> - Nit in Authors List: Unless I've missed something, Richard's affiliation
> is
> no longer current. (I only point it out in case it's an oversight; I have
> no
> objection if it's that way on purpose.)
>

I'll let Richard chime in ..

Shumon
_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls

Reply via email to