Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Sure. But if it's used only for DoH/DoT queries inside a DNS resolver, its deployment path is more realistic than adding DANE to all the TLS clients.


Right, I agree with that narrow point, but it seems clear to me that neither is going to happen; I think DANE is a dead letter.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: