|
|
|
|
|
by tzs
1030 days ago
|
|
Those two other problems that it does solve could be done in a less centralized way, couldn't they? E.g., add a record to DNS that contains a public key for the domain. Clients can grab that when they are grabbing the server IP address. |
|
In other words, you're just trading trusted CAs for trusted DNS operators.