Skip to content

Comment on Running a Certificate Transparency logparent

Comments

In a world where DANE catches on on the web, I don't see why Google and Mozilla couldn't do that again. I mean, presumably there'd need to be some evidence of malfeasance, like there was with Web PKI. I don't see why Mozilla alone couldn't start by putting the screws to a smaller CCTLD and some medium-sized DNS hosts for instance.

That said, I don't particularly see DANE growing on the web.

Google and Mozilla can't "dis-trust" .COM. They're stuck with it.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.