[Cryptography] Certificates and PKI
ben at links.org
Mon Dec 22 08:33:53 EST 2014
On 21 December 2014 at 19:19, Viktor Dukhovni <cryptography at dukhovni.org> wrote:
> * More progress needs to be made on the DNSSEC last-mile
Indeed, this does appear to be the biggest blocker for DANE.
But also: DANE puts registries and registrars in the roles of CA and
RA. If we think CAs are not a good solution, how is it the
registries/registrars magically are?
More information about the cryptography