Re: dns.c modification patch for getting TLSA RR records
Manvendra Bhangui <[email protected]> Sat, 26 May 2018 19:27:59 +0530
| Newsgroups | gmane.mail.qmail.general |
|---|---|
| Message-ID | <CAOqj+1P6AsNXp1B_0KcWu9-MrhXmNe5EkbuQmU9OqhpPGGJ38g@mail.gmail.com> |
On 26 May 2018 at 18:39, Erwin Hoffmann <[email protected]> wrote: > > Apart from that: The use of TLSA records (and perhaps CAA) together with > CurveDNS (given it's lookup) is certainly as 'safe' as with DNSSEC, though > the RFC just require the later. > > Regards. > > Thanks for the pointer. I will take a look at curvedns. Is it the one at http://curvedns.on2it.net/ ?