[128972] in North American Network Operators' Group
DNSSEC and SSL
daemon@ATHENA.MIT.EDU (ML)
Sat Aug 21 21:00:36 2010
Date: Sat, 21 Aug 2010 21:00:37 -0400
From: ML <ml@kenweb.org>
To: "nanog@nanog.org" <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
Would a future with a ubiquitous DNSSEC deployment eliminate the market
for commercial CAs?
Would functioning DNSSEC + self signed certs be more secure/trustworthy
than our current system of trusted CAs chosen by OS/browser developers?