Skip to content

Comment on DNS-on-Blockchain is the next step after DNS-over-HTTPSparent

Comments

How do you securely get the cert thumbprint?

You don't need to,even if you get a malicious thumbprint,the associated cert still needs to be signed by a trusted CA. CA list for TLDs will be distributed with the resolver software just like browsers ship with such a list (or rely on your browser/client preferred list)

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.