I had previously reviewed -09 -14 is significantly cleaner on my main points from -09, which had to do with specifying error handling behaviour, and client certs with multiple dNSName SANs. Many other minor points have been cleaned up as well. Good work. I am happy to mark this as Ready. I include a couple of minor comments below. Major: None. Minor: Section 7 “Per the TLS protocol, the client is only permitted to send the extension if it sees the corresponding extension in the server's CertificateRequest message.” Error handling? What should the server do if this is violated? It’s possible that this is already specified by TLS, but “Per the TLS protocol” is too vague a reference for me to be able to go look it up – RFC & section number? Section 9 Raw Public Keys Not necessarily a problem, but this document does not give me enough context to tell if the public key is somehow bound to the TLSA DNS record or if only the DNS name is validated in this scenario. Maybe just add a sentence to this section stating the authentication model here? Nits: None.