[144983] in cryptography@c2.net mail archive
Re: Possibly questionable security decisions in DNS root management
daemon@ATHENA.MIT.EDU (Stephan Neuhaus)
Fri Oct 23 11:57:06 2009
Cc: Florian Weimer <fweimer@bfk.de>,
Jerry Leichter <leichter@lrw.com>,
bmanning@vacation.karoshi.com,
cryptography@metzdowd.com
From: Stephan Neuhaus <neuhaus@st.cs.uni-sb.de>
To: "Perry E. Metzger" <perry@piermont.com>
In-Reply-To: <878wf3ldqh.fsf@snark.cb.piermont.com>
Date: Thu, 22 Oct 2009 22:49:08 +0200
On Oct 22, 2009, at 16:12, Perry E. Metzger wrote:
> I don't think anyone is smart enough to understand all the
> implications of this across all the systems that depend on the DNS,
> especially as we start to trust the DNS because of the authentication.
"We" trust the DNS already. As far as I can follow the discussion,
that's part of the problem.
Fun,
Stephan
PS: If your point is that DNSSEC will not solve the problem, I agree.
---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com