• @[email protected]
    link
    fedilink
    English
    13 months ago

    All of them, find one that responds an answer valid for my local saved key.

    The DNS server is no longer an authority on its own, just your keyring matters.

      • @[email protected]
        link
        fedilink
        English
        03 months ago

        The certificate authorities on my ring that I trust. For normal people that’s already included in their OS or browser

        • @NicolaHaskell
          link
          English
          03 months ago

          So, an authority? It sounds like this would complicate DNSSEC by requiring the “root keys” to be stored outside the DNS itself.

          • @[email protected]
            link
            fedilink
            English
            13 months ago

            We already have to have key rings. Centralized DNS is just a second, superfluous layer of authority (and a massive grift) on top

            • @NicolaHaskell
              link
              English
              03 months ago

              “Centralized DNS” is an oxymoron, we’ll have to agree to disagree