[19101] in Kerberos_V5_Development
Re: Proposal for using NAPTR/URI records
daemon@ATHENA.MIT.EDU (Nico Williams)
Tue Feb 24 14:44:42 2015
MIME-Version: 1.0
In-Reply-To: <1424805724.13431.25.camel@willson.usersys.redhat.com>
Date: Tue, 24 Feb 2015 13:42:38 -0600
Message-ID: <CAK3OfOhBb0=+OneLoa-pcaMMZtZYvLD0ZdkmYuoURJXTn0_qxg@mail.gmail.com>
From: Nico Williams <nico@cryptonector.com>
To: Simo Sorce <simo@redhat.com>
Cc: "krbdev@mit.edu" <krbdev@mit.edu>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: krbdev-bounces@mit.edu
On Tue, Feb 24, 2015 at 1:22 PM, Simo Sorce <simo@redhat.com> wrote:
> Sorry, but if you are using DNSSEC, MITM is not a problem, so
> unfortunately I do not understand your concerns with more info on the
> assumptions you are making.
The proposal did not mention DNSSEC. I'm saying you'll need to say
something about at least that.
_______________________________________________
krbdev mailing list krbdev@mit.edu
https://mailman.mit.edu/mailman/listinfo/krbdev