What’s going on with certificate revocation?
Does X.509 certificate revocation work as intended, or even work at all?
Does X.509 certificate revocation work as intended, or even work at all?
Guest Post: By transferring pre-existing trust from the zone’s DNS operator, a new in-band solution would simplify and secure automation of DNSSEC deployment.
Guest Post: DNS transparency is a gaping hole in Internet security.
Guest Post: Study finds millions of IPv6 CPE routers continue to use privacy and security vulnerable EUI-64 GUAs.
Guest Post: An overlooked DNS vulnerability that, when combined with a configuration error, is leading to massive DNS traffic surges.
How can we contextualize the large numbers used in IPv6 address models?
Guest Post: Is it possible to disrupt RPKI Relying Party software by introducing a malicious CA/repository into the tree?
Guest Post: Alibaba shares their experience developing XLINK, a multipath extension for QUIC.
Slack’s DNSSEC debacle, NSEC problems, Measuring DNSSEC, and more from DNS-OARC 36.
Geoff Huston discusses technical presentations from RIPE 83.