On Fri, 20 Feb 2015, Brian Dickson wrote:
I have read the document. Modulo any other minor comments from other reviewers, I think it is a fine document, and should be published. Extremely minor comment:
Thanks for the review!
In section 5.1, about email leaks, it may be worth additionally mentioning: Use of distinct SALT values can further limit brute force efforts, even where the same key is used.
How would that help? I would assume the attacker zone walks the zone and then brute forces the names offline. Whether the actual live zone changes salt wouldnt matter at that point? Paul _______________________________________________ dane mailing list [email protected] https://www.ietf.org/mailman/listinfo/dane
