2019-10-15 06:34:15
John R Levine <johnl(_at_)taugh(_dot_)com> wrote:
On Mon, 14 Oct 2019, Tony Finch wrote:

RFC 7344 did not include bootstrapping, but that was added by RFC 8078.
Sadly it's more like a set of hints rather than an actual protocol...

It's just hand waving.  The guys who wrote it know that, but the problem is
that there was no consensus on how to bootstrap.  It's a hard problem since
it's sort of inherent that there's nothing other than a DNSSEC signature that
reliably authenticates a DNSSEC record.

I think if we get more registries copying .cz and/or .ch then some
consensus may emerge but there doesn't seem to be much movement in this

