[29622] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

RE: PGP kerserver infrastructure

daemon@ATHENA.MIT.EDU (Randy Bush)
Fri Jun 30 10:18:14 2000

From: Randy Bush <randy@psg.com>
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit
To: Edward Lewis <lewis@tislabs.com>
Cc: nanog@merit.edu, pgp-keyserver-folk@flame.org
Message-Id: <E1381ZH-0000St-00@rip.psg.com>
Date: Fri, 30 Jun 2000 07:14:55 -0700
Errors-To: owner-nanog-outgoing@merit.edu


> As far as DNSSEC, a trust model following the domain hierarchy is
> currently being pushed 

did dnssec drop cross-auth?  cross-auth specifically allows non-hierarchic
trust which allows one to 'subvert' the hierarchic model.

randy


home help back first fref pref prev next nref lref last post