What DNS Is Not

Paul Vixie vixie at isc.org
Thu Nov 26 04:16:49 UTC 2009


Jorge Amodio <jmamodio at gmail.com> writes:

> What needs to be done to have ISPs and other service providers stop
> tampering with DNS ?

we have to fix DNS so that provider-in-the-middle attacks no longer work.
(this is why in spite of its technical excellence i am not a DNSCURVE fan,
and also why in spite of its technical suckitude i'm working on DNSSEC.)

<http://queue.acm.org/detail.cfm?id=1647302> lays out this case.
-- 
Paul Vixie
KI6YSY




More information about the NANOG mailing list