15 ms·
For readers interested in understanding the technical details about potential BGP attacks on domain validation, which serve as a motivation for Let's Encrypt's
by mittalprat 7y ago
For readers interested in understanding the technical details about potential BGP attacks on domain validation, which serve as a motivation for Let's Encrypt's multi-perspective validation deployment, see the following paper from USENIX Security: https://www.usenix.org/conference/usenixsecurity18/presentation/birge-lee https://www.usenix.org/conference/usenixsecurity18/presentat...
- dgacmu 7y agoAnd for background on the multiple perspectives validation approach: http://www.cs.cmu.edu/~dga/papers/perspectives-usenix2008.pdf http://www.cs.cmu.edu/~dga/papers/perspectives-usenix2008.pd...
- movedx 7y agoThis was excellent. Thanks for sharing. Think about the contents of that video/PDF for a second. The guys/gals doing that bit of research at the university are clearly smart, but imagine what a state level actor can do?