nanog mailing list archives

Re: What DNS Is Not


From: Paul Vixie <vixie () isc org>
Date: Thu, 26 Nov 2009 04:16:49 +0000

Jorge Amodio <jmamodio () gmail com> writes:

What needs to be done to have ISPs and other service providers stop
tampering with DNS ?

we have to fix DNS so that provider-in-the-middle attacks no longer work.
(this is why in spite of its technical excellence i am not a DNSCURVE fan,
and also why in spite of its technical suckitude i'm working on DNSSEC.)

<http://queue.acm.org/detail.cfm?id=1647302> lays out this case.
-- 
Paul Vixie
KI6YSY


Current thread: