On Oct 22, 2009, at 16:12, Perry E. Metzger wrote:

I don't think anyone is smart enough to understand all the implications of this across all the systems that depend on the DNS, especially as we start to trust the DNS because of the authentication.

"We" trust the DNS already. As far as I can follow the discussion, that's part of the problem.



PS: If your point is that DNSSEC will not solve the problem, I agree.

