[132816] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Blocking International DNS

daemon@ATHENA.MIT.EDU (Randy Bush)
Wed Dec 1 20:53:20 2010

Date: Thu, 02 Dec 2010 10:53:10 +0900
From: Randy Bush <randy@psg.com>
To: David Conrad <drc@virtualized.org>
In-Reply-To: <772A6AAF-DA7B-4A98-94F5-AA62222DB4AB@virtualized.org>
Cc: North American Network Operators Group <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

>> the more i think about this, the more i am inclined to consider a
>> second trusted root not (easily) attackable by the usg, who owns the
>> root now, or the acta vigilantes.  as dissent becomes less tolerated,
>> let alone supported, we may want to attempt to ensure it in our
>> deployments.
> Wouldn't this simply change the focus of who can attack from the USG
> (which, as far as I am aware, has not attacked the root)

see smb's url re rightsholders having alleged bad sites blocked.

randy


home help back first fref pref prev next nref lref last post