ietf
[Top] [All Lists]

Re: Securing DNS Re: IAB statement on the RPKI.

2010-02-17 18:15:06
On Wed, Feb 17, 2010 at 11:01:38AM -0500, Phillip Hallam-Baker wrote:
One mechanism that was unfortunately pushed asside as a result of the
fixation on end to end DNSSEC would be to for the resolver to use
DNSSEC (and other methods) to authenticate the data it receives and to
use some modification of TSIG to authenticate the communication
between client and resolver.

Whatever made you think that had been "pushed aside"?  And it seems to
me SIG(0) will work better.

A

-- 
Andrew Sullivan
ajs(_at_)shinkuro(_dot_)com
Shinkuro, Inc.
_______________________________________________
Ietf mailing list
Ietf(_at_)ietf(_dot_)org
https://www.ietf.org/mailman/listinfo/ietf

<Prev in Thread] Current Thread [Next in Thread>