[90722] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: wrt joao damas' DLV talk on wednesday

daemon@ATHENA.MIT.EDU (Randy Bush)
Mon Jun 12 13:15:31 2006

From: Randy Bush <randy@psg.com>
Date: Mon, 12 Jun 2006 07:08:18 -1000
To: Todd Underwood <todd-nanog@renesys.com>
Cc: nanog@merit.edu
Errors-To: owner-nanog@merit.edu


>>     what is the security policy that isc plans to use over the
>>     content of the isc dlv registry?  and how will the dvl trust
>>     key roll-over and revocation be handled?
>> if the above can not be very clearly answered (by isc?), then this
>> proposal is techno-political hubris at best.
> yes, or an interesting proof-of-concept that can be taken-up and
> completed by someone else.

actually, i suspect that the issues of dlv are exactly those of
iana root signing, key management and tld signature policy.  and
hence dlv is hoisted on the same petard it attempts to avoid, and
then devolves to a simple power play of isc vs iana with neither
having a good answer to the real technical and security issues.

randy


home help back first fref pref prev next nref lref last post