3 ms·
I'm not speaking to the validity of whether or not DNSSEC is actually a good idea. Your contention is that it's not. But saying the equivalent of "no one uses i
by ejr 12y ago
I'm not speaking to the validity of whether or not DNSSEC is actually a good idea. Your contention is that it's not. But saying the equivalent of "no one uses it" is demonstrably false.
- tptacek 12y agoEnterprises buy all sorts of crazy shit that people don't use. This is the same thing.
- danyork 12y agoI'm sorry, but no, it's not the same thing. (I'm in Toronto, right now, so all messages should start off being polite!) Enterprises DO buy all sorts of crazy stuff but this is not one of them. I know it annoys the critics, but there ARE very real deployments of DNSSEC happening out there. As I cited in another comment, there are 18 million Comcast customers now getting DNSSEC validation. There are millions of users in many European countries that are getting DNSSEC validation. In Sweden, for example, around 71% of all users are user DNS resolvers that perform DNSSEC validation (scroll down on http://gronggrong.rand.apnic.net/cgi-bin/ccpage?c=XA&x=1&g=0&r=1&w=7 http://gronggrong.rand.apnic.net/cgi-bin/ccpage?c=XA&x=1&g=0... for the per-country stats)
- tptacek 12y agoWhat percentage of DNS resolutions in Sweden actually involve DNSSEC? Take your time; I've got a pretty good first approximation of the answer. :)
- danyork 12y ago(smiling) You already know the answer - "it depends". What websites were they visiting? If they were going to a lot in .SE, then they might have had a good bit of DNSSEC validation happening. If they were going to .COM websites they probably would have had very little.