Re: PKA support

Klaus Ethgen <[email protected]> Fri, 10 Apr 2026 08:41:08 +0100
Newsgroups gmane.comp.encryption.gpg.user
Message-ID <[email protected]>
Hi,

Am Fr den 10. Apr 2026 um  8:28 schrieb Werner Koch:
> And: DNS is not more secure given all the problems and the move from DNS
> to HTTPS based DNS lookup in the browsers.

Well, if you do DNSSEC, it is much more secure than HTTPS. However, the
problem is, that major players do not care about implementing it. For
example, Hetzner does still not allow to add DNSSEC glue to the
registration. There was a solution for this but isc closed it down as
"all country toplevel domains support DNSSEC", fully ignoring that the
registrars don't.

Another problem are such players as big tech making it hard to have use
of DNSSEC.

Regards
   Klaus
-- 
Klaus Ethgen                                       http://www.ethgen.ch/
pub  4096R/4E20AF1C 2011-05-16            Klaus Ethgen <[email protected]>
Fingerprint: 85D4 CA42 952C 949B 1753  62B3 79D0 B06F 4E20 AF1C

_______________________________________________
Gnupg-users mailing list
[email protected]
https://lists.gnupg.org/mailman/listinfo/gnupg-users
signature.asc (application/pgp-signature, 728 B)
-----BEGIN PGP SIGNATURE-----
Comment: Charset: ISO-8859-1

iQHPBAABCgA5FiEEMWF28vh4/UMJJLQEpnwKsYAZ9qwFAmnYqZQbFIAAAAAABAAO
bWFudTIsMi41KzEuMTIsMiwyAAoJEKZ8CrGAGfasX1sMAJ03nuTaaqSPfqegbhzR
vrhFk0nUzow6ezlwn3aY1UT45+yccoJxqt49Dpm8gJQVLvRlI9aEZ+KmU9Iy+H4H
H7hHy874HYIV1DlXD9Q5WbCoziNPypjzVGtuXWJ5rwcRnaQ3SP5Qtp7By/fo+Sda
bCsdusDX+7YzCiAsM2jAV8znC3YwbdzH3Prt163OEbC1tR/fYHKY5AvZOan/N2YB
QnQQNDuULvOBZs54AuLJLgq9idizUQNXY203Wv39S8OlK7xHXAzdt/HOBjX6YxaB
lb49Wl2V1FatyABEfO20peWrJLriYBn06afDWalldKHGWt/NU3CYHIO/lzT9pVOI
j97X8yoMZK25hK6kh4r896OC6vEwhVWY3XlDDPh9R4uw8UozHP25hckf8eHqG5Rs
xiZQXkn0MVFiKH1kaxrQJjXaIUFIfbejYvProFqhBEYX9lQbGob0jckZM4KvxmQ0
s1JfUD8ame1LNFVYrMi8Eirku+4+J2axh8iM/eIirEfQcw==
=/Tlb
-----END PGP SIGNATURE-----