logoalt Hacker News

dlopes7yesterday at 9:53 PM3 repliesview on HN

I love how I work with IT for 20 years and don't understand a single acronym here other than DNSSEC


Replies

icedchaiyesterday at 10:18 PM

I've been in IT 30+ years, been running DNS, web servers, etc. since at least 1994. I haven't bothered with DNSSEC due to perceived operational complexity. The penalty for a screw up, a total outage, just doesn't seem worth the security it provides.

show 2 replies
walrus01yesterday at 9:55 PM

To be fair, advanced real world knowledge of public/private key PKIs (x.509 or other), things like root CAs, are a fairly esoteric and very specialized field of study. There's people whose regular day jobs are nothing but doing stuff with PKI infrastructure and their depth of knowledge on many other non-PKI subjects is probably surface level only.

show 3 replies
bfleschyesterday at 10:19 PM

Don't worry, that's by design ;)