PKA support

Klaus Ethgen klaus+gnupg at ethgen.ch
Fri Apr 10 09:41:08 CEST 2026


Hi,

Am Fr den 10. Apr 2026 um  8:28 schrieb Werner Koch:
> And: DNS is not more secure given all the problems and the move from DNS
> to HTTPS based DNS lookup in the browsers.

Well, if you do DNSSEC, it is much more secure than HTTPS. However, the
problem is, that major players do not care about implementing it. For
example, Hetzner does still not allow to add DNSSEC glue to the
registration. There was a solution for this but isc closed it down as
"all country toplevel domains support DNSSEC", fully ignoring that the
registrars don't.

Another problem are such players as big tech making it hard to have use
of DNSSEC.

Regards
   Klaus
-- 
Klaus Ethgen                                       http://www.ethgen.ch/
pub  4096R/4E20AF1C 2011-05-16            Klaus Ethgen <Klaus at Ethgen.ch>
Fingerprint: 85D4 CA42 952C 949B 1753  62B3 79D0 B06F 4E20 AF1C
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 728 bytes
Desc: not available
URL: <https://lists.gnupg.org/pipermail/gnupg-users/attachments/20260410/158cc6c0/attachment.sig>


More information about the Gnupg-users mailing list