[90755] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: wrt joao damas' DLV talk on wednesday

daemon@ATHENA.MIT.EDU (Gadi Evron)
Tue Jun 13 17:33:43 2006

Date: Tue, 13 Jun 2006 16:33:11 -0500 (CDT)
From: Gadi Evron <ge@linuxbox.org>
To: Randy Bush <randy@psg.com>
Cc: Paul Vixie <vixie@vix.com>, nanog@merit.edu
In-Reply-To: <17551.11797.212401.837561@roam.psg.com>
Errors-To: owner-nanog@merit.edu


On Tue, 13 Jun 2006, Randy Bush wrote:
> 
> >>> can you say "does not scale?"
> >> Indeed.
> > this is why we're trying to sign up some registrars, starting with alice's,
> > who can send us blocks of keys based on their pre-existing trust
> > relationships.
> 
> so a key roll or change of delegation requires two levels of human
> intervention to work?

DNS-SEC will live and die on the business model. How user-friendly it is
vs. how necessary it is against what alternatives there are.

To be honest, waiting for so many years for DNS-SEC, if these questions
were not answered by now...


> 
> randy
> 


home help back first fref pref prev next nref lref last post