Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
sadpluto
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
1.
▲
by
sadpluto
14y ago
I think a little search answers my own question. From [Google's cache of][1] I see that it refers to commercial activities. § 6 Identification of providers Concerning commercial offers, providers shall indicate: 1. their name an
2.
▲
Ask HN: Hetzner's Terms and Conditions: "full name and address must be present"
1 points
by
sadpluto
14y ago
|
1 comments
3.
▲
by
sadpluto
14y ago
Are there Bootstrap tutorials that also combine the minimal CSS knowledge required in order to use it? For instance, I have a vague understanding of the box model, and can hand-code very simple pages myself, but I find it unsatisfactory, as
4.
▲
by
sadpluto
14y ago
Does your decentralized ideal apply to the whole Internet, or just TLD signing and such? In other words, do you believe we'd be better off without a DNS root zone? I know there's Freenet, so I guess another question is whether you think tha
5.
▲
by
sadpluto
14y ago
How can DANE ever work if DNS (including DNSSEC) is an unencrypted protocol? Doesn't this mean that the moment you get a response to a DNS query the a malicious network could return orchestrated nonsense? It looks like something like DNSCur
6.
▲
by
sadpluto
14y ago
Wow. Thank you very much for educating us, Thomas. Your comments require grabbing some popcorn or equivalent. In particular when you engage in a constructive debate with someone of your caliber. One of my all-time favorite threads in HN (or
7.
▲
by
sadpluto
14y ago
Thanks for answering! What I don't understand is that, given that your starting point is "two computers talking over a malicious network", doesn't the current state of affairs of (unencrypted)DNS mean that it's game over from the outset? Th
8.
▲
by
sadpluto
14y ago
Could security experts give their take on this? There are some strong statements, such as the last sentence: "Because DNSCurve does not do this, and because the problems DNSCurve actually does solve are pretty well solved by UDP source port
9.
▲
by
sadpluto
14y ago
Thanks for your answer! I'm more confused by the moment about DNSSEC et al: isn't the DNSSEC-based validation of HTTPS referred to above supposed to get rid of CAs in the future? That wouldn't make sense even with DNSSEC considering that th
10.
▲
Paul Vixie: Whither DNSCurve? [2010]
(isc.org)
3 points
by
sadpluto
14y ago
|
2 comments
11.
▲
by
sadpluto
14y ago
In [1] you showed us how to authenticate via DNSSEC HTTPS in Chrome. If I understand correctly this involves a lookup of a TYPE257 record. Given that only 5% can resolve TXT records, do you know what % of Chrome users can then resolve TYPE2
12.
▲
by
sadpluto
14y ago
Hello everyone! I know... I'm still submitting my own articles. On my defense I'll just say it's article #2... I hereby promise I will not do it once I reach #10. I feel it may be of interest to some, in particular the collection of links,
13.
▲
A few facts and a few questions on DNSSEC
(blog.sadpluto.com)
1 points
by
sadpluto
14y ago
|
1 comments
14.
▲
by
sadpluto
14y ago
What is the standard reference for DOM mastery?
15.
▲
What steps do you take to protect your domains?
(blog.sadpluto.com)
2 points
by
sadpluto
14y ago
|
0 comments