And another...
---------- Forwarded message ---------- From: Garrett Wollman <[EMAIL PROTECTED] <mailto:[EMAIL PROTECTED]>> To: XMPP Operators Group <[email protected] <mailto:[email protected]>> Date: Fri, 15 Aug 2008 13:25:42 -0400 Subject: Re: [Operators] Secure Communications Week <<On Fri, 15 Aug 2008 10:12:42 -0600, Peter Saint-Andre <[EMAIL PROTECTED] <mailto:[EMAIL PROTECTED]>> said: > In any case, in my experience only a small percentage of admins are > bothered by this policy (mostly at universities), and the solution is > more of a PITA than an impossible hurdle (make nice to the postmaster). I think in many cases (certainly true for us), universities run their own CAs anyway. (But there's a problem with that for federation purposes, since our CA has a "private use only" policy.) It would make more sense to use DNSsec; too bad TLS is stuck in X.509-land for the foreseeable future. -GAWollman
