Hacker News new | past | comments | ask | show | jobs | submit login

I think it's worth pointing out here that DNScurve isn't some crazy OpenDNS standard; it's a research proposal from Daniel J. Bernstein, author of djbdns, the only nameserver that survived the 2000's without a terrible security flaw.

I don't know or care why OpenDNS pushed for DNScurve adoption (I don't use or approve of OpenDNS; I think its performance benefits are apocryphal and that its NXDOMAIN interception breaks the Internet in more pernicious ways than any Verizon filter). But I do object to the subtext that DNScurve --- or critiques of the vast, unruly briar patch of DNSSEC standards --- must have ulterior motives.

And as someone who cares about (but does not always live up to) the debate standards of Hacker News, I object to the way you responded to a factual correction by kicking up dust about motives. It was wrong for you to imply that DNSSEC was going to be a serious technical hurdle to NXDOMAIN interception.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: