Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I'm guessing for DNSSEC, the usage is probably low and for DANE it's probably almost non-existant.

FWIW, I use the Firefox addon "DNSSEC Validator" (also does DANE) - https://www.dnssec-validator.cz/ - So if somebody managed to MITM my connection and insert a different, but still trusted, cert in the way, I'd notice.

DNSSEC/DANE would probably see a lot more adoption if one or more of the main browsers did this sort of validation by default.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: