Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

If the problem is path between registrar and CA, then deploying the fix to clients seems like an absolute overkill.

Just create a secure path from CA to registrar. RDAP-based or DoH-based, or something from scratch, does not really matter. It will only need to cover few thousand CAs and TLDs, so it will be vastly simpler that upgrading billions of internet devices.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: