[64898] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

RE: Hijacked IP space.

daemon@ATHENA.MIT.EDU (Randy Bush)
Tue Nov 4 10:55:22 2003

From: Randy Bush <randy@psg.com>
Date: Tue, 4 Nov 2003 07:51:53 -0800
To: Owen DeLong <owen@delong.com>
Cc: Bill Woodcock <woody@pch.net>, nanog@merit.edu
Errors-To: owner-nanog-outgoing@merit.edu


> Those options are not mutually exclusive, and, while I agree that
> it would be better if the RIR's accepted generic GPG keys along
> the lines of what RADB does, the X.509 certificate is not a bad
> first step.  At least it's better than Mail-From or Crypt-PW.
>>>> Should we, as a community, register with RIR's with PGP.
>>> Each of the RIRs has either already established, or is in the
>>> process of establishing, a CA for that purpose.  Please use
>>> them.
>> thanks, but i choose to have my peers certify my identity, not the
>> rirs

the rirs already accept pgp certs.  and i use them, as do all
security-conscious registrants.  i was disagreeing with woody's
pushing x.509 certs to the exclusion of pgp certs.

randy
---
Q: Because it reverses the logical flow of conversation.
A: Why is top posting frowned upon?


home help back first fref pref prev next nref lref last post