3 ms·
"Consumer Product Safety Commission is behind...DDoS" This sort of title suggests that intent is not important. If we accept that as true, then we can make a
by _-- 10y ago
"Consumer Product Safety Commission is behind...DDoS"
This sort of title suggests that intent is not important.
If we accept that as true, then we can make a few more observations.
DNSSEC is behind DDoS.
The large responses mandated by DNSSEC allow DNS to be used to DDoS.
People warned the DNSSEC proponents about this.
They ignored the warnings.
Because the intent of DNSSEC is something else besides DDoS. (What that something is could be a controversial topic in itself.)
If DNSSEC and its users are behind DDoS, then who is behind DNSSEC?
What are they trying to achieve, what is the problem they hope to solve with DNSSEC? Besides making DDoS easier.
A small group of people gets to ultimately decide what is and what is not a "valid" or "authentic" domain name?
Why would anyone need something like that?
"DNS experts" over the years have been increasingly willing to admit that it's reasonable to acknowledge that users could choose not to share a DNS cache with anyone else. They could run their own cache bound to the loopback.
When this happens, does the user still need DNSSEC?