nanog mailing list archives

Re: DNSSEC and SSL


From: Rubens Kuhl <rubensk () gmail com>
Date: Mon, 23 Aug 2010 12:47:21 -0300

The fact hat Verisign kept the domain business and sold the CA
business to Symantec tells which business they think is stronger.


Rubens


On Sat, Aug 21, 2010 at 10:00 PM, ML <ml () kenweb org> wrote:
Would a future with a ubiquitous DNSSEC deployment eliminate the market
for commercial CAs?

Would functioning DNSSEC + self signed certs be more secure/trustworthy
than our current system of trusted CAs chosen by OS/browser developers?






Current thread: