Fraudulent *.google.com certificate issued
Posted Aug 30, 2011 17:16 UTC (Tue) by
dkg (subscriber, #55359)
In reply to:
Fraudulent *.google.com certificate issued by dlang
Parent article:
Fraudulent *.google.com certificate issued
This is exactly my point. We need distributed/decentralized naming schemes that allow corroborative assertions so that our tools can actually reflect explicit, considered reliance on naming/identifying authorities. DNS as currently implemented (including DNSSEC) doesn't provide this decentralization, so it doesn't solve the underlying problem.
(
Log in to post comments)