[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: HashKnownHosts



* Wouter Verhelst:

>> > -- and relying on other people's security to increase your own isn't
>> > pretty clever, actually.
>> 
>> Currently, it's the foundation of Internet security, I'm afraid.
>
> Well, then the 'foundation of Internet security' is very weak, I'm
> afraid.

It is.

> It's plain stupid to rely on someone else to get _your_ security
> working correctly. Think about it.

Well, if you care about DDoS attacks (whether at the IP packet or at
the email packet layer), there is basically no choice: you have to
rely on others.  Same for DNS and, especially, BGP.



Reply to: