1 Mar 2010 22:21
Re: DNSCurve vs. DNSSEC - FIGHT! (was OpenDNS today announced it has adopted DNSCurve to secure DNS)
Wassim Haddad <wmhaddad <at> gmail.com>
2010-03-01 21:21:48 GMT
2010-03-01 21:21:48 GMT
On Mon, Mar 1, 2010 at 2:13 PM, Masataka Ohta <mohta <at> necom830.hpcl.titech.ac.jp> wrote:
Phillip Hallam-Baker wrote:I don't know what EV means, but anything human, including CA, is not
> Moving to DNSSEC, regardless of the technical model does not eliminate
> the need for certificates or CAs. The purpose of EV certificates is to
> re-establish the principle of accountability.
infallible, which is why PKI is insecure.
=> Can you please explain in few lines what would be your preference(s) for a solution to enable
DNSsec?
I apologize if you have already submitted a proposal about it which I must have missed... in which case,
I would appreciate a pointer.
Regards,
Wassim H.
_______________________________________________ Ietf mailing list Ietf <at> ietf.org https://www.ietf.org/mailman/listinfo/ietf
RSS Feed