[DNSOP] Re: [art] Re: DNS-designated Public Key Author ities (DKA)
Bob Traverz <[email protected]> Thu, 25 Jun 2026 16:37:24 -0500
| Newsgroups | gmane.ietf.dnsop,gmane.ietf.apps-discuss |
|---|---|
| Message-ID | <CAKhC=ah3yC9zyK+nX_oG4k_nzNyUsnkNL1C2VTKPpCAcvEk2Bw@mail.gmail.com> |
DV/OV/EV were pricing tiers rather than meaningful security properties. The whole edifice collapsed not because relying parties converged to some lowest common security denominator, but because the browsers refused to carry the green UI for the higher-tier certificates. Later, Let's Encrypt put an end to this scam. I don't see this as an argument that without the protective embrace of a protocol, the market will converge to an insecure solution. Some of you may remember Service Oriented Architecture. Consultants used to push SOA as the better, safer alternative over REST. It probably was, but way too complex, and REST was simple and caught up quickly in security. Regards, Bob Traverz On Thu, Jun 25, 2026 at 1:00 PM Ben Schwartz <bemasc= [email protected]> wrote: > On Thu, Jun 25, 2026 at 1:44 PM S Kishore <[email protected]> > wrote: > ... > > The moment you put a DKA designation in a https URL, you don’t know what > the URL serves whom. > > I think you're describing a version of the "key consistency" problem. > DNS does not offer any consistency guarantee (and indeed, > authoritative DNS servers routinely serve different answers to > particular resolvers). Luckily, there are several good ways to ensure > consistency, when the underlying protocol does not guarantee it: > > https://datatracker.ietf.org/doc/html/draft-ietf-privacypass-key-consistency-01 > > ... > > It is no-longer an arms-length relationship. > > Arms-length relationship, by indirection to some mutually trusted > party, can certainly be achieved via HTTP (or any other transport > protocol). However, I don't think it's very coherent in this > situation. The ownership of each email address on some domain is > determined exclusively by the domain operator. If it decides to claim > one of those addresses for its own use, in whole or in part, it is > free to do so. > > > If you have followed the OpenPGP debates over the years, transparency of > key discovery has always been a major theme. > > Absolutely, but that work should go to KEYTRANS. > > ... > > Pushing important decisions > > about trust levels out to the relying parties does not work well in > > practice. > > > > Answer: Do you have any specific examples or case studies? > > The example on my mind is the Web PKI, where the DV/OV/EV trust > hierarchy has effectively collapsed to just one level. > > > Ben > My preference would be to eliminate this TXT record from the > design entirely. > > > > Answer: I am not in love with TXT records, but they have evolved to have > no semantics > > My concern is not about the RR type. My concern is about the loss of > security from an indirection that is highly vulnerable to attack. > > BTW, another line of attack: an attacker operating a pass-through DKA > could mount a significant "passive" attack, determining the metadata > of communication without modifying any requests or responses. > > --Ben > > _______________________________________________ > art mailing list -- [email protected] > To unsubscribe send an email to [email protected] > _______________________________________________ DNSOP mailing list -- [email protected] To unsubscribe send an email to [email protected]