Wes Hardaker (wjhns1) writes:
> Anyone that knows both is a potential point of compromise.
> 
>   http://datatracker.ietf.org/doc/draft-hardaker-dnse-split-key-dns/ 
> 
> Warning: the security in here is not.

"In order to protect against this threat, the endEntity must transmit
 the request to the recursive resolver in such a way that the
 recursive resolver in such a way that the recursive resolver must not
 be aware of which end entity sent the request in the first place."

Man, reading that sentence, I had the feeling that sentence that I had
read it twice.

_______________________________________________
dns-privacy mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dns-privacy

Reply via email to