Re: DNSCurve vs. DNSSEC - FIGHT! (was OpenDNS today announced it has adopted DNSCurve to secure DNS)2010-03-01 15:14:26Phillip Hallam-Baker wrote: Moving to DNSSEC, regardless of the technical model does not eliminate the need for certificates or CAs. The purpose of EV certificates is to re-establish the principle of accountability.
I don't know what EV means, but anything human, including CA, is not
infallible, which is why PKI is insecure.
Is EV divine?
Masataka Ohta
_______________________________________________
Ietf mailing list
Ietf(_at_)ietf(_dot_)org
https://www.ietf.org/mailman/listinfo/ietf
|
|
||||||||||||||||