• interdimensionalmeme@lemmy.ml
    link
    fedilink
    English
    arrow-up
    1
    arrow-down
    1
    ·
    6 days ago

    The certificate authorities on my ring that I trust. For normal people that’s already included in their OS or browser

    • NicolaHaskell@lemmy.world
      link
      fedilink
      English
      arrow-up
      1
      ·
      21 hours ago

      So, an authority? It sounds like this would complicate DNSSEC by requiring the “root keys” to be stored outside the DNS itself.

      • interdimensionalmeme@lemmy.ml
        link
        fedilink
        English
        arrow-up
        1
        ·
        15 hours ago

        We already have to have key rings. Centralized DNS is just a second, superfluous layer of authority (and a massive grift) on top