nanog mailing list archives

Re: Massive change in Public Cert behaviour coming soon


From: Eliot Lear via NANOG <nanog () lists nanog org>
Date: Fri, 23 May 2025 17:52:31 +0200


On 23.05.2025 17:08, John R. Levine wrote:

Federated private CAs implement business relationships among the organizatiosns.  Some random person saying "hi, I am foo.bar.com" provides what?  I don't get it.

You get the same thing you get from a domain name plus possibly one additional piece of information: signer information It would seem to me that having some external attestation about the SMTP server would eliminate some amount of SMTP via BGP hijacking, but as this isn't my day job, I'm not going to make any strong claims.

Eliot


Attachment: OpenPGP_signature.asc
Description: OpenPGP digital signature

_______________________________________________
NANOG mailing list 
https://lists.nanog.org/archives/list/nanog () lists nanog org/message/G27A2WAJ3LQ47A5ZRWGKXQAXPPZ5WKVJ/

Current thread: