• finn@lemmy.world
    link
    fedilink
    English
    arrow-up
    56
    arrow-down
    4
    ·
    2 years ago

    Domain registration ≠ internet security. Root of trust is in cryptographic keys, not domains. DNS is not the security cornerstone you make it out to be. PKI says hi!

    • lolcatnip@reddthat.com
      link
      fedilink
      English
      arrow-up
      6
      ·
      2 years ago

      Email is tied to domains. TLS is tied to domains. CORS is tied to domains. OAuth is tied to domains. Those are just four things I can think of while half asleep. Here’s one recent example of how screwing up a domain name is enough by itself to cause a security breach.

      Cryptography is not security any more than domain names are; both are facets of how security is implemented but there’s no one system that makes the Internet secure.