6 ms·
I wish there was an alternative to the CA system we have now. I'm part of a private forum with a self-signed cert and while initially there was some hesitation
by ejr 12y ago
I wish there was an alternative to the CA system we have now. I'm part of a private forum with a self-signed cert and while initially there was some hesitation to it, most members have added it to their browser exceptions.
- psz 12y agoThere is a proposed solution for this scenario: https://en.wikipedia.org/wiki/DNS-based_Authentication_of_Named_Entities https://en.wikipedia.org/wiki/DNS-based_Authentication_of_Na... It will allow for pinning certificates (self-signed too) to records in in DNS with DNSSEC.
- ejr 12y agoThat's interesting. I hope it sees more widespread adoption by browser vendors and the recent security disclosures will hopefully help to tip implementation in that direction.
- mike-cardwell 12y agoIf you're using a resolver which supports DNSSEC, and you're using Firefox with the DNSSEC-Validator addon from https://www.dnssec-validator.cz/ https://www.dnssec-validator.cz/ (which supports DANE) and you visit https://grepular.com/ https://grepular.com/, you will see a nice little green icon in the address bar to show you that DNSSEC was used, and another green icon to show you that the SSL cert was validated using DANE.
- y0ghur7_xxx 12y agoDNSSEC still relays on CAs. They were just renamed to "Trust Anchors". The trust anchor for .com is Verisign.
- kilburn 12y ago> DNSSEC still relays on CAs. No, DNSSEC has nothing to do with CAs. Each DNS authority defines its own keys used to sign its records. > They were just renamed to "Trust Anchors". You are thinking about DANE [1], which is what the a protocol on top of DNSSEC. Using DANE you authorize X.509 certificates and/or CAs for certain domains. This allows you to restrict your domain to a specific well-known CA (such as Verisign), but it also allows you to authorize your own CA or even a specific certificate directly. It even works per-service, so you do not need to use the same CA/certificates for all your services. If you were suggesting that DANE does not solve the traditional CA issue you are wrong. [1] http://tools.ietf.org/html/rfc6698 http://tools.ietf.org/html/rfc6698 > The trust anchor for .com is Verisign. Err.. no? I don't even understand what are you trying to say here. The "com" domain does not seem to have any TLSA records...
- 0x0 12y ago>> The trust anchor for .com is Verisign. >Err.. no? I don't even understand what are you trying to say here. The "com" domain does not seem to have any TLSA records... Verisign runs the "com." zone, so I guess they would have to admin any DNSSEC/DANE/TLSA stuff.
- kilburn 12y agoThey only have to admin the DNSSEC stuff (publish your domain name keys along with your nameservers, as you set them up through your regular domain provider). The DANE part needs no further support than you being able to use DNSSEC for your domain's DNS. Obviously there is always some entity controling each TLD, and that entity can screw up your domain if it acts improperly.
- schoen 12y agoThat last property is what makes that entity a "trust anchor", and what DANE critics specifically don't like or want to get rid of.
- tptacek 12y agoYou're not following. DNSSEC is secured by a chain of keys leading to a root; the entity that controls the root controls the chain. If you use DNSSEC to authenticate your certificate, you're giving control over your certificate to whoever runs the roots.
- 0x0 12y agoSo you will have to trust Verisign not publish a different, compromised, set of domain name keys along with your nameservers.
- vertex-four 12y agoYou have to trust them not to do that anyway right now, as they're a CA. You also have to trust any of the >100 other CAs that your system trusts.
- csandreasen 12y agoMoxie Marlinspike created an alternative to the CA system called Convergence[1]. His DEFCON video[2] does a good job describing the problem and his proposed solution. There's a Firefox plugin for it, but Chrome has come out and said they will likely never support it[3]. [1] http://convergence.io/ http://convergence.io/ [2] https://www.youtube.com/watch?v=pDmj_xe7EIQ https://www.youtube.com/watch?v=pDmj_xe7EIQ (you can skip the first 5 minutes; if you want to jump straight to his proposed solution, it's around 35 minutes in) [3] http://www.theregister.co.uk/2011/09/08/google_chrome_rejects_convergence/ http://www.theregister.co.uk/2011/09/08/google_chrome_reject...
- higherpurpose 12y agoThere are alternatives - as long as you're willing to give up on regular DNS domains and use .dns or .bit domains: https://github.com/okTurtles/dnschain https://github.com/okTurtles/dnschain http://www.freespeechme.org/ http://www.freespeechme.org/
- gerbal 12y agoThe university I work for uses Self-signed certs for everything but ssl. Apparently setting up properly signed certs is too expensive. And it's more effective to have the IT staff spend an inordinate amount of time convincing end-users that the warnings about invalid certs from various applications are nothing to worry about (I'm looking at you Andoid and OSX).
- 13throwaway 12y agoAre you being sarcastic or do you really think they are nothing to worry about? If people just accept any cert they see anyone could just mitm them with a self signed cert.
- gerbal 12y agoI'm being sarcastic. Also some departments use different self-signed certs than the university at large. Not a great situation.
- anaphor 12y agoCouldn't they distribute the signatures to the faculty and students in some semi-secure way?