[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
RE: Storing Certificates in the DNS (draft-ietf-dnsext-rfc2538bis-08)
At 2:43 PM +0000 10/13/05, todd.glassey@xxxxxxx wrote:
phb - NO ONE in their right mind would use DNS as the only
repository for storing certificates and this initiative and the
conversations in re of this idea are demonstrative of how little
PKIX has a grip on reality IMHO. Clearly storing certs for DNS in
DNS and possibly in some limited scope might work, but the reality
is why bother - the issue is in the trust and use models - something
which this group refuses to do...
Reading the subject line of this thread shows that this effort comes
from the DNSEXT WG, not this one.
--Paul Hoffman, Director
--VPN Consortium