Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Are there any other specs that ICANN tells everyone to deploy that regularly take down entire TLDs, DNS providers, and occasionally an entire RIR?

[0]: https://www.icann.org/news/announcement-2019-02-22-en

[1]: https://ianix.com/pub/dnssec-outages.html

(Disclaimer: I work with 'tptacek but I agree with him because he's right not because I have to ;-))



You can be right about something without bringing it up every chance you get, despite it only having a vague relation to any topic being discussed.


Avoiding DNSSEC is literally, in the literal sense of the word literally, the primary motivation for MTA-STS. The relationship to this thread is not vague.

(Source: the section of the RFC that says the primary motivation of MTA-STS is to ensure transport security when deployment of DNSSEC is undesirable or impractical.)




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: