DNSSEC Debate
Discussions center on the effectiveness, low adoption, security limitations, and criticisms of DNSSEC, often contrasting it with alternatives like DoH, DoT, and DNSCrypt.
Activity Over Time
Top Contributors
Keywords
Sample Comments
DNS is usually not secure. DNSSEC is not deployed widely. End of story.
It's no better unless the domain and all such CAs are using DNSSEC.
Your understanding of DNSSEC is incorrect.
If anyone used DNSSEC it would be a problem.
We need a truly decentralized alternative, DNSSEC isn't that.
Hey, good point. I guess there's not much I can do about that yet, without DNSSEC or whatever.
False. DoH, DNS over TLS, and DNSCrypt/DNSCurve address that problem. DNSSEC does not.
This wouldn't be possible with dnssec right?
No.For additional info, see https://sockpuppet.org/stuff/dnssec-qa.html and https://sockpuppet.org/blog/2015/01/15/against-dnssec/
Interesting position, care to elaborate how DNSSEC is damaging the internet?