logoalt Hacker News

cyberaxtoday at 2:47 AM1 replyview on HN

DNSSEC is not dangerous. Pretty much the worst thing is breakage, not an accidental compromise.

It's also more secure, compared to ACME. An on-path attacker can impersonate the site operator and get credentials. DNSSEC is immune to that.


Replies

tptacektoday at 2:52 AM

This is a very strange definition of "dangerous".

show 1 reply