On 25/01/2019 16:50, John R. Levine wrote: > > The cert names are tied to the MX which is tied to the recipient.
Says who? That's common and sensible but not mandatory. The cert names could be all sorts of flakey things, incl having wildcards. E.g. ESNI could be "secret.example.com" while the cert name is "*.example.com" and there are many more variations possible (too many, but that's another day's work;-) S.
0x5AB2FAF17B172BEA.asc
Description: application/pgp-keys
signature.asc
Description: OpenPGP digital signature
_______________________________________________ Uta mailing list [email protected] https://www.ietf.org/mailman/listinfo/uta
