smutt / danish

Experiments with middle-box DANE
GNU General Public License v3.0
6 stars 0 forks source link

Add support for logging TLSA records #8

Open smutt opened 7 years ago

smutt commented 7 years ago

During the ICANN 59 DNSSEC workshop presentation there was a request to preserve found TLSA records. We should add a config toggle to record found TLSA records in a separate log file from the debugging file.

smutt commented 5 years ago

Consider hashing the SNI and DNS TLSA record when logging them. Maybe use the Ethernet address for the salt.