DNSSEC to be strangled at birth.

Jack Lloyd lloyd at randombit.net
Thu Apr 5 10:05:02 EDT 2007


On Wed, Apr 04, 2007 at 05:51:27PM +0100, Dave Korn wrote:

>   Can anyone seriously imagine countries like Iran or China signing up to a
> system that places complete control, surveillance and falsification
> capabilities in the hands of the US' military intelligence?

How is this any different from plain-old-DNS? Except that now the
number of attackers is limited to one - instead of worrying about the
US or China or UK or India or Russia or whoever falsifying DNS
records, you just have to worry about the US. And if/when you catch
them at it, you know exactly who did it.

-Jack

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo at metzdowd.com



More information about the cryptography mailing list