[Cryptography] Preliminary review of the other Applied Cryptography

Viktor Dukhovni cryptography at dukhovni.org
Mon Apr 14 01:55:25 EDT 2014


On Sun, Apr 13, 2014 at 12:08:42PM -0400, ianG wrote:

> > Of course all of this is predicated on the notion that the DNSSEC
> > last-mile problems will be solved, which may require pressure for
> > them to be solved, which may require some non-trivial adoption, a
> > catch-22 perhaps.
> 
> What is the DNSSEC last-mile problem?  It's the week for displaying
> ignorance, seemingly.

DNSSEC works fine on the Internet backbone, but is not yet widely
compatible with "last-mile" networks.  Various hotel, airport,
coffee-shop captive portals, behind some firewalls, ...

These are rarely environments in which SMTP MTAs find themselves,
but they are rather more common for browsers.

There are probably folks on this list more knowledgeable than I
on the various last-mime barriers to DNSSEC.

-- 
	Viktor.


More information about the cryptography mailing list