And another...

---------- Forwarded message ----------
From: Garrett Wollman <[EMAIL PROTECTED] <mailto:[EMAIL PROTECTED]>>
To: XMPP Operators Group <[email protected] <mailto:[email protected]>>
Date: Fri, 15 Aug 2008 13:25:42 -0400
Subject: Re: [Operators] Secure Communications Week
<<On Fri, 15 Aug 2008 10:12:42 -0600, Peter Saint-Andre
<[EMAIL PROTECTED] <mailto:[EMAIL PROTECTED]>> said:

 > In any case, in my experience only a small percentage of admins are
 > bothered by this policy (mostly at universities), and the solution is
 > more of a PITA than an impossible hurdle (make nice to the postmaster).

I think in many cases (certainly true for us), universities run their
own CAs anyway.  (But there's a problem with that for federation
purposes, since our CA has a "private use only" policy.)  It would
make more sense to use DNSsec; too bad TLS is stuck in X.509-land for
the foreseeable future.

-GAWollman


Reply via email to